Manage Device Security
567
M4300 Series and M4300-96X Fully Managed Switches User Manual
4. Click the Login button.
The System Information page displays.
5. Select Security > Control > IPv6 Source Guard > Interface Configuration.
6. Use one of the following methods to select an interface:
• In the Go To Interface field, enter the interface in the unit/slot/port format and click on
the
Go button.
• Next to the Interface column, select the check box for the port that you want to
configure, select multiple check boxes to apply the same setting to all selected
interfaces, or select the check box in the table heading to apply the same settings to
all interfaces.
7. Use the IPv6SG Mode menu to enable or disable validation of sender IPv6 address on this
interface.
If IPv6SG is enabled, packets are not forwarded if the sender IPv6 address is not in the
DHCP snooping binding database. The factory default is Disable.
8. Use the IPv6SG Port Security
menu to enable or disable the IPv6SG port security on the
selected interface.
If IPv6SG port security is enabled, then the packets are not forwarded if the sender MAC
address is not in FDB table and it is not in the DHCP snooping binding database. T
o
enforce filtering based on MAC address other required configurations are as follows:
• Enable port-security globally.
• Enable port-security on the interface level.
IPv6SG port security cannot be enabled if IPv6SG is disabled.
The factory default is
Disable.
Also, you are not allowed to turn of
f IPv6SG port security while IPv6SG is
enabled.
9. Click the Apply button.
Your settings are saved.