![Cisco 350XG series Administration Manual Download Page 547](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491547.webp)
Security: IPv6 First Hop Security
Configuring IPv6 First Hop Security through Web GUI
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
528
24
-
Binding from DHCPv6 Messages:
—Select to enable binding from
DHCPv6.
Neighbor Binding Entry Limits
—
See above.
•
Entries per VLAN
—Select
Inherited
to use global value,
No Limit
to set no
limit on the number of entries and
User Defined
to set a special value for this
policy.
•
Entries per Interface
—Select
Inherited
to use global value,
No Limit
to set
no limit on the number of entries and
User Defined
to set a special value for
this policy.
•
Entries per MAC Address
—Select
Inherited
to use global value,
No Limit
to set no limit on the number of entries and
User Defined
to set a special
value for this policy.
STEP 5
Click
Apply
to add the settings to the Running Configuration file.
STEP 6
To attach this policy to an interface:
•
Attach Policy to VLAN
—Click to jump to
page
where you can attach this policy to a VLAN.
•
Attach Policy to Interface
page where you can attach this policy to a port.
IPv6 Source Guard Settings
Use the IPv6 Source Guard Settings page to enable the IPv6 Source Guard feature
on a specified group of VLANs. If required, a policy can be added or the system-
defined default IPv6 Source Guard policies can be configured in this page.
To configure IPv6 Source Guard:
STEP 1
Click
Security
>
IPv6 First Hop Security
>
IPv6 Source Guard Settings
.
STEP 2
Enter the following global configuration fields:
•
IPv6 Source Guard VLAN List
—Enter one or more VLANs on which IPv6
Source Guard is enabled.
•
Port Trust
—Displays that by default the policies are for untrusted ports. This
can be changed per policy.
STEP 3
If required, click
Add
to create a First Hop Security policy.