Chapter 4 Service Configuration
4.26.4 set dhcpv6 ip-source-guard add/delete/quota
Purpose
This command enables or disables the ip-source-guard function for ports.
Command Mode
Global configuration mode
Syntax
set dhcpv6 ip-source-guard
{{
add
|
delete
}
port
<
portlist
>|
quota
<
0-400
>}
Parameter Description
Parameter
Description
add
Enables this function.
delete
Disables this function.
<
portlist
>
Port list.
quota
Quota of source addresses.
<
0-400
>
The value 0 means no limit. The source IP addresses include
IPv4 addresses and IPv6 addresses.
Guidelines
After the ip-source-guard function is enabled, by listening the interactions between the
client and server, the IP addresses allocated by the server to the client are recorded and
the messages with other source IP addresses are filtered to prevent spoofing.
Before enabling the ip-source-guard function, you must enable the DHCPv6 snooping
function.
Examples
The following example enables the ip-source-guard function for ports 9 and 10:
zte(cfg)#set dhcpv6 ip-source-guard add port 9-10
Fail to enable ip v6 source guard on port 9.
%
DHCP v6 snooping is disabled on this port (0x4000092a)
zte(cfg)#set dhcpv6 snooping add port 9-10
zte(cfg)#set dhcpv6 ip-source-guard add port 9-10
4.26.5 set dhcpv6 option18 enable/disable
Purpose
This command globally enables or disables the DHCPv6 option18 function.
4-459
SJ-20130731155059-003|2013-11-27 (R1.0)
ZTE Proprietary and Confidential