Nd Attack Detection Commands; Display Ipv6 Nd Detection Statistics - HPE FlexNetwork 10500 Series Security Command Reference

Hide thumbs Also See for FlexNetwork 10500 Series:
Table of Contents

Advertisement

Views
System view
Predefined user roles
network-admin
mdc-admin
Usage guidelines
Use this command to enable source MAC consistency check on a gateway. The gateway checks the
source MAC address and the source link-layer address for consistency for each ND message. If an
inconsistency is found, the gateway drops the ND message.
Examples
# Enable source MAC consistency check for ND messages.
<Sysname> system-view
[Sysname] ipv6 nd mac-check enable

ND attack detection commands

display ipv6 nd detection statistics

Use display ipv6 nd detection statistics to display statistics for ND messages dropped by ND
attack detection.
Syntax
display ipv6 nd detection statistics [ interface interface-type interface-number ]
Views
Any view
Predefined user roles
network-admin
network-operator
mdc-admin
mdc-operator
Parameters
interface interface-type interface-number: Specifies an interface by its type and number. If you do
not specify an interface, this command displays statistics for ND messages dropped by ND attack
detection on all interfaces.
Examples
# Display statistics for all ND messages dropped by ND attack detection.
<Sysname> display ipv6 nd detection statistics
ND packets dropped by ND detection:
Interface
XGE1/0/1
XGE1/0/2
XGE1/0/3
XGE1/0/4
Packets dropped
78
0
0
0
781

Advertisement

Table of Contents
loading

Table of Contents