Edge-Core ECS4110-28T Management Manual page 947

28/52-port gigabit ethernet layer 2+ switch
Hide thumbs Also See for ECS4110-28T:
Table of Contents

Advertisement

IPv6 source guard maximum bindings must be set to a value higher
than DHCPv6 snooping maximum bindings and ND snooping maximum
bindings.
If IPv6 source guard, ND snooping, and DHCPv6 snooping are enabled
on a port, the dynamic bindings used by ND snooping, DHCPv6
snooping, and IPv6 source guard static bindings cannot exceed the
maximum allowed bindings set by the ipv6 source-guard max-
binding command. In other words, no new entries will be added to the
IPv6 source guard binding table.
If IPv6 source guard is enabled on a port, and the maximum number of
allowed bindings is changed to a lower value, precedence is given to
deleting entries learned through DHCPv6 snooping, ND snooping, and
then manually configured IPv6 source guard static bindings, until the
number of entries in the binding table reaches the newly configured
maximum number of allowed bindings.
E
XAMPLE
This example sets the maximum number of allowed entries in the binding
table for port 5 to one entry.
Console(config)#interface ethernet 1/5
Console(config-if)#ipv6 source-guard max-binding 1
Console(config-if)#
This command shows whether IPv6 source guard is enabled or disabled on
show ipv6
each interface, and the maximum allowed bindings.
source-guard
C
OMMAND
Privileged Exec
E
XAMPLE
Console#show ipv6 source-guard
Interface
---------
Eth 1/1
Eth 1/2
Eth 1/3
Eth 1/4
Eth 1/5
Eth 1/6
. .
.
M
ODE
Filter-type
Max-binding
-----------
-----------
DISABLED
DISABLED
DISABLED
DISABLED
SIP
DISABLED
– 947 –
| General Security Measures
C
25
HAPTER
IPv6 Source Guard
5
5
5
5
1
5

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ecs4110-28pEcs4110-52tEcs4110-52p

Table of Contents