Nd Detection - TP-Link T2600G-28TS User Manual

Jetstream gigabit l2 managed switch
Hide thumbs Also See for T2600G-28TS:
Table of Contents

Advertisement

Auto Refresh:
Refresh Interval:
Illegal ARP Packet
Port:
Trusted Port:
Illegal ARP Packet:

13.6 ND Detection

 ND Brief Introduction
IPv6 Neighbor Discovery (ND) protocol uses five types of ICMPv6 messages to implement the
following functions:
• Address resolution
• Neighbor reachability detection
• Duplicate address detection (DAD)
• Router/prefix discovery and address autoconfiguration
• Redirection
Five types of the ICMPv6 messages are listed below:
ICMPv6 Message
Neighbor Solicitation (NS)
Neighbor Advertisement (NA)
Router Solicitation (RS)
Router Advertisement (RA)
Redirect (RR)
 ND Attack
Because of the absence of security mechanism, ND protocol is easy to be exploited by attackers.
Attackers can exploit the ND protocols as follows:
• The attackers send forged NS/NA/RS packets with the IPv6 address of a victim host. The
Enable/Disable the Auto Refresh feature.
Specify the refresh interval to display the ARP Statistics.
Displays the port number.
Indicates the port is an ARP Trusted Port or not.
Displays the number of the received illegal ARP packets.
Function
• Acquires the neighbor's link-layer address.
• Verifies whether a neighbor is reachable.
• Detects duplicate address.
• Responses to an NS message.
• Notifies the neighbor nodes of link layer changes
• Requests for an address prefix and other
configuration parameters for autoconfiguration.
• Responses to an RS message.
• Advertises
information options and flag bits.
• Informs the source host of another next hop to a
particular destination when certain conditions are
met.
270
information
such
as
the
prefix

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Tl-sg3452Tl-sg3424T2600g-52ts

Table of Contents