EasyManua.ls Logo

ZyXEL Communications GS3700 Series - IPv6 Source Guard Policy Setup

ZyXEL Communications GS3700 Series
548 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Chapter 25 IP Source Guard
GS3700/XGS3700 Series User’s Guide
290
25.12 IPv6 Source Guard Policy Setup
Use this screen to have IPv6 source guard forward valid IPv6 addresses and/ or IPv6 prefixes that
are stored in the binding table and allow or block data traffic from all link-local addresses. To open
this screen, click Advanced Application > I P Source Guard > I Pv6 Source Guard Policy
Setup.
If you select Validate Address and not Validate Prefix, traffic for a binding entry that matches
a IPv6 address and VLAN ID, port number, and MAC address will be forwarded. If this binding
entry is a IPv6 prefix, the traffic will be denied.
If you select Validate Prefix and not Validate Address, traffic for a binding entry that matches
a IPv6 prefix and VLAN ID, port number, and MAC address will be forwarded. If this binding entry
is a IPv6 address, the traffic will be denied.
If you select both Validate Prefix and Validate Address then traffic matching either IPv6
address or prefix will be forwarded.
Figure 201 Advanced Application > IP Source Guard > IPv6 Source Guard Policy Setup (Standalone
mode)
The following table describes the labels in this screen.
Table 137 Advanced Application > IP Source Guard > IPv6 Source Guard Policy Setup (Standalone
mode)
LABEL DESCRIPTION
Name Enter a descriptive name for identification purposes for this IPv6 source guard policy.
Validate Address Select Validate Address to have IPv6 source guard forward valid addresses that are
stored in the binding table.
Validate Prefix Select Validate Prefix to have IPv6 source guard forward valid prefixes that are stored in
the binding table.
Link Local Select Permit to allow data traffic from all link-local addresses; otherwise leave the
setting at Deny. A link-local address is an IPv6 unicast address that can be automatically
configured on any interface using the link-local prefix FE80:: / 10 and the interface
identifier in the modified EUI-64 format.
Add Click this to create the IPv6 source guard policy or to update an existing one.
Cancel Click this to reset the values above or if not applicable, to clear the fields above.
Clear Click this to clear the fields above.
Index This field displays a sequential number for each policy.
Name This field displays the descriptive name for identification purposes for this IPv6 source
guard policy.
Validate Address This field displays the Validate Address status for this IPv6 source guard policy.

Table of Contents

Related product manuals