IPv6 First Hop Security
557
OL-32830-01 Command Line Interface Reference Guide
25
Parameters
•
enable—Enables logging of dropped packets. If no keyword is configured,
this keyword is applied by default.
•
disable—Disables logging of dropped packets.
Default Configuration
Policy attached to port or port channel: the value configured in the policy attached
to the VLAN.
Policy attached to VLAN: global configuration.
Command Mode
IPv6 First Hop Security Policy Configuration mode
User Guidelines
If this command is part of a policy attached to a VLAN, it is applied to all the ports
in the VLAN. If it is defined in a policy attached to a port in the VLAN, this value
overrides the value in the policy attached to the VLAN.
Example
The following example enables logging of dropped messaged with the IPv6 First
Hop Security Policy named policy1:
switchxxxxxx(config)#
ipv6 first hop security policy
policy1
switchxxxxxx(config-ipv6-fhs)#
logging packet drop
switchxxxxxx(config-ipv6-fhs)#
exit
25.54 managed-config-flag
To enable verification of the advertised Managed Address Configuration flag
within an IPv6 RA Guard policy, use the managed-config-flag command in RA
Guard Policy Configuration mode. To return to the default, use the no form of this
command.
Syntax
managed-config-flag {on | off
| disable}
Summary of Contents for 300 Series
Page 2: ......