Configuring A Static Ipv6Sg Binding; Displaying And Maintaining Ipsg - HPE FlexNetwork 7500 Series Security Configuration Manual

Table of Contents

Advertisement

Configuring a static IPv6SG binding

You can configure global static and interface-specific static IPv6SG bindings.
Global static bindings take effect on all interfaces.
Interface-specific static bindings take priority over global static bindings. An interface first uses the
static bindings on the interface to match packets. If no match is found, the interface uses the global
bindings.
Configuring a global static IPv6SG binding
Step
1.
Enter system view.
2.
Configure a global
static IPv6SG
binding.
Configuring a static IPv6SG binding on an interface
Step
1.
Enter system view.
2.
Enter interface view.
3.
Configure a static
IPv6SG binding.

Displaying and maintaining IPSG

Execute display commands in any view and reset commands in user view.
Task
(In standalone mode.)
Display IPv4SG bindings.
(In IRF mode.) Display
IPv4SG bindings.
Command
system-view
ipv6 source binding ip-address ipv6-address
mac-address mac-address
Command
system-view
interface interface-type
interface-number
ipv6 source binding
{ ip-address ipv6-address |
ip-address ipv6-address
mac-address mac-address |
mac-address mac-address }
[ vlan vlan-id ]
Command
display ip source binding [ static | [ vpn-instance vpn-instance-name ]
[ arp-snooping | dhcp-relay | dhcp-server | dhcp-snooping | dot1x ] ]
[ ip-address ip-address ] [ mac-address mac-address ] [ vlan vlan-id ]
[ interface interface-type interface-number ] [ slot slot-number ]
display ip source binding [ static | [ vpn-instance vpn-instance-name ]
[ arp-snooping | dhcp-relay | dhcp-server | dhcp-snooping | dot1x ] ]
[ ip-address ip-address ] [ mac-address mac-address ] [ vlan vlan-id ]
[ interface interface-type interface-number ] [ chassis chassis-number slot
slot-number ]
407
Remarks
N/A
No global static IPv6SG
bindings exist.
Remarks
N/A
The following interface types are
supported:
Layer 2 Ethernet port.
Layer 3 Ethernet interface.
VLAN interface.
By default, no static IPv6SG bindings exist
on an interface.
The vlan vlan-id option is supported only in
Layer 2 Ethernet interface view.
To configure a static IPv6SG binding for
the ND attack detection feature, the vlan
vlan-id option must be specified, and ND
attack detection must be enabled for the
specified VLAN. You can configure the
same static IPv6SG binding on different
interfaces.

Advertisement

Table of Contents
loading

Table of Contents