Firewall Support For Ipv6; Debugging Commands; Sntp Over Ipv6 - Aruba IAP-335 User Manual

Instant software
Hide thumbs Also See for IAP-335:
Table of Contents

Advertisement

SNTP Over IPv6
To view the SNTP configuration:
(Instant AP)# show running-config|include ntp
ntp-server 2001:470:20::121

Firewall Support for IPv6

For a given client, a single ACL is used to firewall both IPv4 and IPv6 rules. A rule any any match any any
any permit in the access rule configuration will expand to two different ACL entries:
any any any P6
l
any any any P4
l
Similarly, if any IPv6 specific rule is added. For example, if any DHCPv6 or FTPv6 rule is added, the ACE would
be expanded as follows:
any 2002::/64 17 0-65535 546-547 6—destined to network 2002::/64 DHCPv6 is denied.
any 2001::10/128 6 0-65535 20-21 6—destined to host 2001::10 FTP is denied.
For all ACLs the IAP will have an implicit IPv4 and IPv6 allow all acl rule.

Debugging Commands

Use the following commands to troubleshoot issues pertaining to IPv6 configuration:
l
show ipv6 interface brief
and any duplicate addresses.
show ipv6 route
l
l
show datapath ipv6 session
l
show datapath ipv6 user
l
show clients
Aruba Instant 6.5.0.0-4.3.0.0 | User Guide
and
show ipv6 interface details
—displays the IPv6 routing information.
—displays IPv6 sessions.
—displays IPv6 client details.
and
show clients debug
—displays the details about IAP clients.
— displays the configured IPv6 address,
IPv6 Support |
80

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents