Ipv6 Source Guard; Configuring Ports For Ipv6 Source Guard - Edge-Core ECS3510-10PD Management Manual

10-port layer 2
Table of Contents

Advertisement

IP
6 S
G
V
OURCE
UARD
C
P
ONFIGURING
ORTS
IP
6 S
FOR
V
OURCE
G
UARD
W
I
EB
NTERFACE
To display the binding table for IP Source Guard:
Click Security, IP Source Guard, Dynamic Binding.
1.
Mark the search criteria, and enter the required values.
2.
Click Query
3.
Figure 221: Showing the IPv4 Source Guard Binding Table
IPv6 Source Guard is a security feature that filters IPv6 traffic on non-
routed, Layer 2 network interfaces based on manually configured entries in
the IPv6 Source Guard table, or dynamic entries in the Neighbor Discovery
Snooping table or DHCPv6 Snooping table when either snooping protocol is
enabled (see the
DHCPv6 Snooping
used to prevent traffic attacks caused when a host tries to use the IPv6
address of a neighbor to access the network. This section describes how to
configure IPv6 Source Guard.
Use the Security > IPv6 Source Guard > Port Configuration page to filter
inbound traffic based on the source IPv6 address stored in the binding
table.
IPv6 Source Guard is used to filter traffic on an insecure port which
receives messages from outside the network or fire wall, and therefore
may be subject to traffic attacks caused by a host trying to use the IPv6
address of a neighbor.
CLI R
EFERENCES
"ipv6 source-guard" on page 935
– 409 –
| Security Measures
C
13
HAPTER

IPv6 Source Guard

commands). IPv6 source guard can be

Advertisement

Table of Contents
loading

Table of Contents