![Cisco 350XG series Скачать руководство пользователя страница 542](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491542.webp)
Security: IPv6 First Hop Security
Configuring IPv6 First Hop Security through Web GUI
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
523
24
-
Match List
— IPv6 prefix list to be matched.
•
Minimal Preference
—This field indicates whether the DHCPv6 Guard
policy will check the minimum advertised preference value of the packet
received.
-
Inherited
—Minimal preference is inherited from either the VLAN or
system default (client).
-
No Verification
—Disables verification of the minimum advertised
preference value of the packet received.
-
User Defined
—Verifies that the advertised preference value is greater
than or equal to this value. This value must be less than the Maximal
Preference value.
•
Maximal Preference
—This field indicates whether the DHCPv6 Guard
policy will check the maximum advertised preference value of the packet
received. This value must be greater than the Minimal Preference value.
-
Inherited
—Minimal preference is inherited from either the VLAN or
system default (client).
-
No Verification
—Disables verification of the lower boundary of the hop
count limit.
-
User Defined
—Verifies that the advertised preference value is less than
or equal to this value.
STEP 5
Click
Apply
to add the settings to the Running Configuration file.
STEP 6
To attach this policy to an interface:
•
Attach Policy to VLAN
—Click to jump to
page
where you can attach this policy to a VLAN.
•
Attach Policy to Interface
page where you can attach this policy to a port.
ND Inspection Settings
Use the Neighbor Discovery (ND) Inspection Settings page to enable the ND
Inspection feature on a specified group of VLANs and to set the global
configuration values for this feature. If required, a policy can be added or the
system-defined default ND Inspection policies can be configured in this page.