![Cisco 350XG series Administration Manual Download Page 524](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491524.webp)
Security: IPv6 First Hop Security
DHCPv6 Guard
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
505
24
•
Egress filtering
Message Validation
ND Inspection validates the Neighbor Discovery protocol messages, based on an
ND Inspection policy attached to the interface. This policy can be defined in the
If a message does not pass the verification defined in the policy, it is dropped and
a rate limited SYSLOG message is sent.
Egress Filtering
ND Inspection blocks forwarding of RS and CPS messages on interfaces
configured as host interfaces.
DHCPv6 Guard
DHCPv6 Guard treats the trapped DHCPv6 messages. DHCPv6 Guard supports
the following functions:
•
Filtering of received DHCPv6 messages.
DHCP Guard discards DHCPv6 reply messages received on interfaces
whose role is client. The interface role is configured in the
•
Validation of received DHCPv6 messages.
DHCPv6 Guard validates DHCPv6 messages that match the filtering based
on the DHCPv6 Guard policy attached to the interface.
If a message does not pass verification, it is dropped. If the logging packet drop
configuration on the FHS common component is enabled, a rate limited SYSLOG
message is sent.
Neighbor Binding Integrity
Neighbor Binding (NB) Integrity establishes binding of neighbors.