Configuration Guide
DHCPv6 Snooping Configuration
To restore the setting to the default value, run the
no ipv6 dhcp snooping filter-dhcp-pkt
command in the interface configuration mode.
Configuration example:
# Filter the DHCPv6 request message on FastEthernet 0/1.
Ruijie#
configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Ruijie(config)#
interface
fastEthernet 0/10
Ruijie(config-if)#
ipv6 dhcp snooping filter-dhcp-pkt
Ruijie#
show ipv6 dhcp snooping
Switch DHCPv6 snooping status : ENABLE
DHCPv6 snooping vlan: 1-4094
DHCPv6 snooping database write-delay time: 0 seconds
DHCPv6 ignore dest-not-found :DISABLE
DHCPv6 snooping link detection :DISABLE
Interface Trusted Filter DHCP
---------------------- ------- ---------
FastEthernet0/10 NO ENABLE
Enabling/Disabling IPv6 Source Guard
Once IPv6 source guard is enabled on a port, all the IPv6 packets, except for DHCPv6 packets, on
the inbouding direction of the port will be filtered. If there is IPv6 address conflict, the ND protocol
packets should be allowed to pass through this port. Configuring security channel or enable ND
Snooping can realize this end to detect IPv6 address conflict. For details, refer to the configuration
sections of related functions. When a user applies IPv6 address through DHCPv6 interaction,
DHCPv6 Snooping will add the corresponding user bound information to the hardware filtering table
so that his IPv6 packets can be forwarded properly. By default, port-address binding is disabled on
the port and all IPv6 packets are forwarded properly.
To enable port-address binding, run the following commands in the privileged EXEC mode mode.
Command
Function
Ruijie#
configure terminal
Enter the global configuration mode.
Ruijie(config)#
interface
interface-name
Enter the interface configuration mode.
Ruijie(config-if)#
ipv6
verify
source
[
port-security
]
Enable port-address binding.
port-security
means
enabling IPv6-MAC-port binding. Without this
option, IPv6-port binding is enabled.
Ruijie(config-if)#
end
Exit to the privileged EXEC configuration mode.
To restore the setting to the default value, run the
no ipv6 verify source
command in the interface
configuration mode.
Configuration example:
Содержание RG-S2900G-E Series
Страница 1: ...RG S2900G E Series Switch RGOS Configuration Guide Release 10 4 2b12 p1 ...
Страница 91: ...Configuration Guide Configuring PoE Configuration ...
Страница 133: ...Configuration Guide EEE Configuration ...
Страница 319: ...Configuration Guide QinQ Configuration ...
Страница 408: ......
Страница 409: ...IP Routing Configuration 1 Static Route Configuration ...
Страница 412: ......
Страница 413: ...Multicast Configuration 1 IGMP Snooping Configuration 2 MLD Snooping Configuration ...
Страница 621: ...Configuration Guide CPU Protection Configuration udp helper 180 4 dhcp client 180 4 lacp 180 4 ...
Страница 757: ......
Страница 758: ...ACL QoS Configuration 1 Access Control List Configuration 2 QoS Configuration ...
Страница 801: ...Reliability Configuration 1 RLDP Configuration 2 TPP Configuration 3 SEM Configuration ...
Страница 901: ...Configuration Guide ERSPAN Configuration ...
Страница 902: ...Web based Configuration 1 Web based Configuration ...