IPv6 First Hop Security
549
OL-32830-01 Command Line Interface Reference Guide
25
The policies cannot be attached by the
ipv6 neighbor binding attach-policy (port
mode)
or
ipv6 neighbor binding attach-policy (VLAN mode)
command. The
vlan_default policy is attached by default to a VLAN, if no other policy is attached
to the VLAN. The port_default policy is attached by default to a port, if no other
policy is attached to the port.
You can define a policy using the ipv6 neighbor binding policy command multiple
times.
If an attached policy is removed, it is detached automatically before removing.
The following commands can be configured into IPv6 Neighbor Binding Policy
Configuration mode:
•
device-role (Neighbor Binding)
•
logging binding
•
max-entries
•
address-config
•
address-prefix-validation
Examples
Example 1—The following example defines a Neighbor Binding policy named
policy1, places the router in Neighbor Binding Policy Configuration mode, enables
logging, and defines the port as internal:
switchxxxxxx(config)#
ipv6 neighbor binding policy
policy1
switchxxxxxx(config-nbr-binding)#
device-role internal
switchxxxxxx(config-nbr-binding)#
logging binding
switchxxxxxx(config-nbr-binding)#
exit
Example 2—The following example defines a Neighbor Binding policy named
policy1 using multiple steps:
switchxxxxxx(config)#
ipv6 neighbor binding policy
policy1
switchxxxxxx(config-nbr-binding)#
device-role internal
switchxxxxxx(config-nbr-binding)#
exit
switchxxxxxx(config)#
ipv6 neighbor binding policy
policy1
Summary of Contents for 300 Series
Page 2: ......