EasyManuals Logo

Cisco 300 Series User Manual

Cisco 300 Series
1117 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #559 background imageLoading...
Page #559 background image
IPv6 First Hop Security
559 OL-32830-01 Command Line Interface Reference Guide
25
Syntax
match ra address {prefix-list
ipv6-prefix-list-name
} | disable
no match ra address
Parameters
• prefix-list
ipv6-prefix-list-name
—The IPv6 prefix list to be matched.
• disable—Disables verification of the router’s IPv6 address.
Default Configuration
Policy attached to port or port channel: the value configured in the policy attached
to the VLAN.
Policy attached to VLAN: router's addresses are not verified.
Command Mode
RA Guard Policy Configuration mode
User Guidelines
This command enables verification of the router's IPv6 address in received RA
messages by a configured prefix list. If the router’s source IPv6 address does not
match the prefix list or if the prefix list is not configured, the RA message is
dropped.
Use the disable keyword to disable verification of the router’s IPv6 address
regardless of the VLAN configuration.
Example
The following example defines an RA Guard policy named policy1, places the
switch in RA Guard Policy Configuration mode, matches the router addresses to
the prefix list named list1, and defines the prefix list named list1 authorizing the
router with link-local address FE80::A8BB:CCFF:FE01:F700 only:
switchxxxxxx(config)#
ipv6 nd raguard policy
policy1
switchxxxxxx(config-ra-guard)#
match ra address prefix-list
list1
switchxxxxxx(config-ra-guard)#
exit
switchxxxxxx(config)#
ipv6 prefix-list list1 permit
FE80::A8BB:CCFF:FE01:F700/128

Table of Contents

Other manuals for Cisco 300 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 300 Series and is the answer not in the manual?

Cisco 300 Series Specifications

General IconGeneral
ModelCisco 300 Series
CategorySwitch
DimensionsVaries by model
WeightVaries by model
Power over Ethernet (PoE)Available on select models
ManagementWeb-based GUI, SNMP, CLI
VLANsUp to 256
Security FeaturesACLs, 802.1X, Port Security
Humidity10% to 90% non-condensing
Ports8, 16, 24, 48

Related product manuals