Configuration Guidelines; Configuration Procedure; Displaying And Maintaining Nd Detection - HP 5500 HI Series Configuration Manual

Security
Hide thumbs Also See for 5500 HI Series:
Table of Contents

Advertisement

Configuration guidelines

Follow these guidelines when you configure ND detection:
To create IPv6 static bindings with IP source guard, use the ipv6 source binding command. For more
information, see
The DHCPv6 snooping table is created automatically by the DHCPv6 snooping module. For more
information, see Layer 3—IP Services Configuration Guide.
The ND snooping table is created automatically by the ND snooping module. For more information,
see Layer 3—IP Services Configuration Guide.
ND detection performs source check by using the binding tables of IP source guard, DHCPv6
snooping, and ND snooping. To prevent an ND-untrusted port from discarding legal ND packets in
an ND detection-enabled VLAN, make sure that at least one of the three functions is available.
When creating an IPv6 static binding with IP source guard for ND detection in a VLAN, specify the
VLAN ID for the binding. If not, no ND packets in the VLAN can match the binding.

Configuration procedure

To configure ND detection:
Step
1.
Enter system view.
2.
Enter VLAN view.
3.
Enable ND Detection.
4.
Quit system view.
5.
Enter Layer 2 Ethernet interface view
or Layer 2 aggregate interface view.
6.
Configure the port as an ND-trusted
port.

Displaying and maintaining ND detection

Task
Display the ND detection
configuration.
Display the statistics of discarded
packets when the ND detection
checks the user legality.
Clear the statistics by ND
detection.
"Configuring IP source
Command
system-view
vlan vlan-id
ipv6 nd detection enable
quit
interface interface-type
interface-number
ipv6 nd detection trust
Command
display ipv6 nd detection [ | { begin | exclude |
include } regular-expression ]
display ipv6 nd detection statistics [ interface
interface-type interface-number ] [ | { begin |
exclude | include } regular-expression ]
reset ipv6 nd detection statistics [ interface
interface-type interface-number ]
guard."
391
Remarks
N/A
N/A
Disabled by default.
N/A
N/A
Optional.
A port does not trust sources of
ND packets by default.
Remarks
Available in any view
Available in any view
Available in user view

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents