Configuring The Ipv6 Source Guard Function; Enabling Ipv6 Source Guard On An Interface - HP 5920 Series Configuration Manual

Hide thumbs Also See for 5920 Series:
Table of Contents
Step
3.
Configure a static IPv4
source guard binding
entry.

Configuring the IPv6 source guard function

You cannot configure the IPv6 source guard function on a service loopback interface. If IPv6 source
guard is enabled on an interface, you cannot assign the interface to a service loopback group.

Enabling IPv6 source guard on an interface

You must first enable the IPv6 source guard function on an interface for the IP source guard to take effect.
All matching criteria in a static IPv6 source guard binding entry are used by IP source guard to filter
packets. For information about static IPv6 binding entry configuration, see
source guard binding
A dynamic IPv6 source guard binding entry can include MAC address, IPv6 address, VLAN tag, ingress
interface, and entry type. The entry type identifies the source module for the binding entry, such as
DHCPv6 snooping. Dynamic IPv6 source guard uses the entries to filter incoming IPv6 packets based on
the matching criteria specified in the ipv6 verify source command. If a match is found, packets are
forwarded.
To implement dynamic IPv6 source guard, make sure DHCPv6 snooping operates correctly on the
network.
To enable the IPv6 source guard function on an interface:
Step
1.
Enter system view.
2.
Enter interface view.
Command
ip source binding { ip-address
ip-address | ip-address
ip-address mac-address
mac-address | mac-address
mac-address } [ vlan vlan-id ]
entry."
Command
system-view
interface interface-type
interface-number
318
Remarks
By default, no static IPv4 source guard
binding entry is configured on an interface.
The vlan vlan-id option is supported only in
Layer 2 Ethernet interface view.
To configure a static binding entry for the
ARP detection function, the vlan vlan-id
option must be specified, and ARP detection
must be enabled for the specified VLAN.
You can configure the same static IPv4
source guard binding entry on different
interfaces.
"Configuring a static IPv6
Remarks
N/A
The following interface types are
supported:
Layer 2 Ethernet port.
Layer 3 Ethernet interface.
Layer 3 Ethernet subinterface.
VLAN interface.
Layer 3 aggregate interface.

Hide quick links:

Table of Contents
loading

This manual is also suitable for:

5900 series

Table of Contents