Security: IPv6 First Hop Security
Configuring IPv6 First Hop Security through Web GUI
STEP 1
STEP 2
STEP 3
STEP 4
STEP 5
Cisco 500 Series Stackable Managed Switch Administration Guide
•
Attach Policy to Interface—Click to jump to
page where you can attach this policy to a port.
IPv6 Source Guard Settings
Use the IPv6 Source Guard Settings page to enable the IPv6 Source Guard feature
on a specified group of VLANs. If required, a policy can be added or the system-
defined default IPv6 Source Guard policies can be configured in this page.
To configure IPv6 Source Guard:
Click Security > IPv6 First Hop Security > IPv6 Source Guard Settings.
Enter the following global configuration fields:
•
IPv6 Source Guard VLAN List—Enter one or more VLANs on which IPv6
Source Guard is enabled.
•
Port Trust—Displays that by default the policies are for untrusted ports.
This can be changed per policy.
If required, click Add to create a First Hop Security policy.
Enter the following fields:
•
Policy Name—Enter a user-defined policy name.
•
Port Trust—Select the port trust status of the policy:
-
Inherited—When policy is attached to a port it is untrusted).
-
Trusted—When policy is attached to a port it is trusted.
Click Apply to attach the policy.
To attach this policy to an interface:
•
Attach Policy to VLAN—Click to jump to
where you can attach this policy to a VLAN.
•
Attach Policy to Interface—Click to jump to
page where you can attach this policy to a port.
Policy Attachment (Port)
Policy Attachment (VLAN)
Policy Attachment (Port)
23
page
538