![Cisco 350XG series Скачать руководство пользователя страница 544](http://html.mh-extra.com/html/cisco/350xg-series/350xg-series_administration-manual_67491544.webp)
Security: IPv6 First Hop Security
Configuring IPv6 First Hop Security through Web GUI
Cisco 350XG & 550XG Series 10G Stackable Managed Switches
525
24
•
Minimal Security Level
—If unsecure messages are not dropped, select the
security level below which messages are not forwarded.
-
Inherited
—Inherit value from VLAN or system default (disabled).
-
No Verification
—Disables verification of the security level.
-
User Defined
—Specify the security level of the message to be
forwarded.
•
Validate Source MAC
—Specify whether to globally enable checking
source MAC address against the link-layer address:
-
Inherited
—Inherit value from VLAN or system default (disabled).
-
Enable
—Enable checking source MAC address against the link-layer
address.
-
Disable
—Disable checking source MAC address against the link-layer
address.
STEP 5
Click
Apply
to add the settings to the Running Configuration file.
STEP 6
To attach this policy to an interface:
•
Attach Policy to VLAN
—Click to jump to
page
where you can attach this policy to a VLAN.
•
Attach Policy to Interface
page where you can attach this policy to a port.
Neighbor Binding Settings
The Neighbor Binding table is a database table of IPv6 neighbors connected to a
device is created from information sources, such as Neighbor Discovery Protocol
(NDP) snooping. This database, or binding, table is used by various IPv6 guard
features to prevent spoofing and redirect attacks.
Use the Neighbor Binding Settings page to enable the Neighbor Binding feature on
a specified group of VLANs and to set the global configuration values for this
feature. If required, a policy can be added or the system-defined default Neighbor
Binding policies can be configured in this page.