Purpose
Command or Action
or
Switch(config-if)#
ipv6 nd inspection vlan 222, 223,224
Verifies that the policy is attached to the specified
interface without exiting the interface configuration
mode.
do show running-config
Example:
Switch#(config-if)#
do show running-config
Step 4
How to Attach an IPv6 Neighbor Discovery Inspection Policy to VLANs Globally
Beginning in privileged EXEC mode, follow these steps to attach an IPv6 ND Inspection policy to VLANs
across multiple interfaces:
SUMMARY STEPS
1.
configure terminal
2.
vlan configuration vlan_list
3.
ipv6 nd inspection
[
attach-policy policy_name
]
4.
do show running-config
DETAILED STEPS
Purpose
Command or Action
Enters the global configuration mode.
configure terminal
Example:
Switch#
configure terminal
Step 1
Specifies the VLANs to which the IPv6 Snooping policy will
be attached ; enters the VLAN interface configuration mode.
vlan configuration vlan_list
Example:
Switch(config)#
vlan configuration 334
Step 2
Attaches the IPv6 Neighbor Discovery policy to the specified
VLANs across all switch and stack interfaces. The default
policy is attached if the
attach-policy
option is not used.
ipv6 nd inspection
[
attach-policy policy_name
]
Example:
Switch(config-vlan-config)#
ipv6 nd inspection
attach-policy example_policy
Step 3
Catalyst 2960-XR Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX1
OL-29434-01
361
Configuring IPv6 First Hop Security
How to Attach an IPv6 Neighbor Discovery Inspection Policy to VLANs Globally