![]() |
IPv6 Configuration Guide, Cisco IOS Release 15.2S
|
||||||||||||||||||||||
IPv6 Destination Guard
![]() |
|||||||||||||||||||||||
|
Contents
IPv6 Destination GuardLast Updated: July 6, 2012
The IPv6 Destination Guard feature blocks any data traffic from an unknown source, and filters IPv6 traffic based on the destination address. Finding Feature InformationYour software release may not support all the features documented in this module. For the latest caveats and feature information, see Bug Search Tool and the release notes for your platform and software release. To find information about the features documented in this module, and to see a list of the releases in which each feature is supported, see the feature information table at the end of this module. Use Cisco Feature Navigator to find information about platform support and Cisco software image support. To access Cisco Feature Navigator, go to www.cisco.com/go/cfn. An account on Cisco.com is not required. Prerequisites for IPv6 Destination Guard
Information About IPv6 Destination GuardIPv6 Destination Guard OverviewThe IPv6 Destination Guard feature blocks data traffic from an unknown source and filters IPv6 traffic based on the destination address. It populates all active destinations into the IPv6 first-hop security binding table, and blocks data traffic when the destination is not identifiied. How to Configure the IPv6 Destination GuardConfiguring IPv6 Destination GuardSUMMARY STEPS
DETAILED STEPS Configuration Examples for IPv6 Destination GuardExample: Configuring an IPv6 Destination Guard PolicyThe following example shows how to configure a destination guard policy: Router> enable Router# configure terminal Router(config)# vlan configuration 300 Router(config-vlan-config)# ipv6 destination-guard attach-policy destination % Warning - 'ipv6 snooping' should be configured before destination-guard Router(config-vlan-config)# ipv6 snooping attach-policy ND Router(config)# vlan configuration 300 Router(config-vlan-config)# ipv6 destination-guard attach-policy destination Router(config-vlan-config)# Router# show ipv6 destination-guard policy destination Destination guard policy Destination: enforcement always Target: vlan 300 Additional ReferencesRelated Documents
Technical Assistance
Feature Information for IPv6 Destination GuardThe following table provides release information about the feature or features described in this module. This table lists only the software release that introduced support for a given feature in a given software release train. Unless noted otherwise, subsequent releases of that software release train also support that feature. Use Cisco Feature Navigator to find information about platform support and Cisco software image support. To access Cisco Feature Navigator, go to www.cisco.com/go/cfn. An account on Cisco.com is not required.
© 2012 Cisco Systems, Inc. All rights reserved.
|
||||||||||||||||||||||
|
|