Displaying And Maintaining Ra Guard; Ra Guard Configuration Example - HPE FlexNetwork 10500 Series Security Configuration Manual

Hide thumbs Also See for FlexNetwork 10500 Series:
Table of Contents

Advertisement

Number of RA messages dropped on the interface.
The RA guard logging feature sends the log messages to the information center. The information
center can then output log messages from different source modules to different destinations. For
more information about the information center, see Network Management and Monitoring
Configuration Guide.
To enable the RA guard logging feature:
Step
1.
Enter system view.
2.
Enable the RA guard logging
feature.

Displaying and maintaining RA guard

Execute display commands in any view and reset commands in user view.
Task
Display the RA guard policy configuration.
Display RA guard statistics.
Clear RA guard statistics.

RA guard configuration example

Network requirements
As shown in
Device B are in VLAN 10.
Configure RA guard on Device B to filter forged and unwanted RA messages.
Configure an RA policy in VLAN 10 for GigabitEthernet 1/0/2 to filter all RA messages received
from the unknown device.
Specify host as the role of the host. All RA messages received on GigabitEthernet 1/0/1 are
dropped.
Specify router as the role of the Device A. All RA messages received on GigabitEthernet 1/0/3
are forwarded.
Figure
144, GigabitEthernet 1/0/1, GigabitEthernet 1/0/2, and GigabitEthernet 1/0/3 of
Command
system-view
ipv6 nd raguard log enable
Command
display ipv6 nd raguard policy [ policy-name ]
display ipv6 nd raguard statistics [ interface interface-type
interface-number ]
reset ipv6 nd raguard statistics [ interface interface-type
interface-number ]
537
Remarks
N/A
By default, the RA guard logging
feature is disabled.

Advertisement

Table of Contents
loading

Table of Contents