•
Number of RA messages dropped on the interface.
The RA guard logging feature sends the log messages to the information center. The information
center can then output log messages from different source modules to different destinations. For
more information about the information center, see Network Management and Monitoring
Configuration Guide.
To enable the RA guard logging feature:
Step
1.
Enter system view.
2.
Enable the RA guard logging
feature.
Displaying and maintaining RA guard
Execute display commands in any view and reset commands in user view.
Task
Display the RA guard policy configuration.
Display RA guard statistics.
Clear RA guard statistics.
RA guard configuration example
Network requirements
As shown in
Device B are in VLAN 10.
Configure RA guard on Device B to filter forged and unwanted RA messages.
•
Configure an RA policy in VLAN 10 for GigabitEthernet 1/0/2 to filter all RA messages received
from the unknown device.
•
Specify host as the role of the host. All RA messages received on GigabitEthernet 1/0/1 are
dropped.
•
Specify router as the role of the Device A. All RA messages received on GigabitEthernet 1/0/3
are forwarded.
Figure
144, GigabitEthernet 1/0/1, GigabitEthernet 1/0/2, and GigabitEthernet 1/0/3 of
Command
system-view
ipv6 nd raguard log enable
Command
display ipv6 nd raguard policy [ policy-name ]
display ipv6 nd raguard statistics [ interface interface-type
interface-number ]
reset ipv6 nd raguard statistics [ interface interface-type
interface-number ]
537
Remarks
N/A
By default, the RA guard logging
feature is disabled.