EasyManuals Logo

Cisco 5510 - ASA SSL / IPsec VPN Edition Configuration Guide

Cisco 5510 - ASA SSL / IPsec VPN Edition
1822 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #218 background imageLoading...
Page #218 background image
7-20
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 7 Using the Startup Wizard
Configuring IPv6 Neighbor Discovery
To configure the amount of time that a remote IPv6 node is considered reachable after a reachability
confirmation event has occurred, perform the following steps:
Step 1 Choose Configuration > Device Setup > Interfaces.
Step 2 Choose the interface for which you want to configure the time. The interface must have been configured
with an IPv6 address. For more information, see the “Configuring IPv6 Neighbor Discovery” section on
page 7-18.
Step 3 Click Edit. The Edit Interface dialog box appears with three tabs: General, Advanced, and IPv6.
Step 4 Click the IPv6 tab.
Step 5 In the Reachable Time field, enter a valid value.
Step 6 Click OK.
Step 7 Click Apply to save the configuration.
Configuring DAD Settings
Duplicate Address Detection (DAD) settings are part of the Neighbor Discovery configuration. DAD
verifies the uniqueness of new unicast IPv6 addresses before they are assigned and ensures that duplicate
IPv6 addresses are detected in the network on a link basis.
To specify DAD settings on the interface, perform the following steps:
Step 1 Enter the number of allowed DAD attempts. This setting configures the number of consecutive neighbor
solicitation messages that are sent on an interface while DAD is performed on IPv6 addresses. Valid
values are from 0 to 600. A zero value disables DAD processing on the specified interface. The default
is one message.
Step 2 Enter the neighbor solicitation message interval. The neighbor solicitation message requests the
link-layer address of a target node. Valid values are from 1000 to 3600000 milliseconds. The default is
1000 milliseconds.
Step 3 Enter the amount of time in seconds that a remote IPv6 node is considered reachable after a reachability
confirmation event has occurred. Valid values are from 1000 to 3600000 milliseconds. The default is
zero. A configured time enables the detection of unavailable neighbors. Shorter times enable detection
more quickly; however, very short configured times are not recommended in normal IPv6 operation.
Step 4 Enter the amount of time that IPv6 router advertisement transmissions are considered valid. Valid values
are from 3 to 1800 seconds. The default is 200 seconds. Router advertisement transmissions include a
preference level and a lifetime field for each advertised router address. These transmissions provide
route information and indicate that the router is still operational to network hosts. By default, these
transmissions are sent every 400 to 600 seconds.
Step 5 Enter the interval between IPv6 router advertisement transmissions. Valid values are from 3 to 1800
seconds. The default is 200 seconds. To have the router advertisement transmission interval be listed in
milliseconds, check the RA Interval in Milliseconds check box.
Step 6 To allow the generation of addresses for hosts, make sure that the Suppress RA check box is unchecked.
This is the default setting if IPv6 unicast routing is enabled. To prevent the generation of IPv6 router
advertisement transmissions, check the Suppress RA check box.

Table of Contents

Other manuals for Cisco 5510 - ASA SSL / IPsec VPN Edition

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 5510 - ASA SSL / IPsec VPN Edition and is the answer not in the manual?

Cisco 5510 - ASA SSL / IPsec VPN Edition Specifications

General IconGeneral
BrandCisco
Model5510 - ASA SSL / IPsec VPN Edition
CategoryFirewall
LanguageEnglish

Related product manuals