show ipv6 snooping capture-policy
To display message capture policies, use the show ipv6 snooping capture-policy command.
show ipv6 snooping capture-policy [interface type number]
Syntax Description
(Optional) Displays first-hop message types on the
specified interface type and number.
interface type number
Command Modes
Any command mode
Command History
ModificationRelease
This command was introduced.8.0(1)
Usage Guidelines
The show ipv6 snooping capture-policy command displays IPv6 first-hop message capture policies.
Examples
The following example shows show ipv6 snooping capture-policy command output on the Ethernet 0/0
interface, on which the IPv6 Neighbor Discovery Protocol (NDP) Inspection and Router Advertisement (RA)
Guard features are configured:
switch# show ipv6 snooping capture-policy
Hardware policy registered on Et0/0
Protocol Protocol value Message Value Action Feature
ICMP 58 RS 85 punt RA Guard
punt ND Inspection
ICMP 58 RA 86 drop RA guard
punt ND Inspection
ICMP 58 NS 87 punt ND Inspection
ICMP 58 NA 88 punt ND Inspection
ICMP 58 REDIR 89 drop RA Guard
punt ND Inspection
The table below describes the significant fields shown in the display.
Table 4: show ipv6 snooping capture-policy Field Descriptions
DescriptionField
A hardware policy contains a programmatic access
list (ACL), with a list of access control entries
(ACEs).
Hardware policy registered on Fa4/11
The protocol whose packets are being inspected.Protocol
Cisco Nexus 7000 Series Security Command Reference
821
Show Commands
show ipv6 snooping capture-policy