Chapter 29 ARP Inspection
XGS4600 Series User’s Guide
322
29.6 IPv6 Source Guard Policy Setup
Use this screen to have IPv6 source guard forward valid IPv6 addresses and/or IPv6 prefixes that are
stored in the binding table and allow or block data traffic from all link-local addresses. To open this
screen, click Advanced Application > IP Source Guard > IPv6 Source Guard Policy Setup.
•If you select Validate Address and not Validate Prefix, traffic for a binding entry that matches a IPv6
address and VLAN ID, port number, and MAC address will be forwarded. If this binding entry is a IPv6
prefix, the traffic will be denied.
•If you select Validate Prefix and not Validate Address, traffic for a binding entry that matches a IPv6
prefix and VLAN ID, port number, and MAC address will be forwarded. If this binding entry is a IPv6
address, the traffic will be denied.
•If you select both Validate Prefix and Validate Address then traffic matching either IPv6 address or
prefix will be forwarded.
Figure 248 Advanced Application > IP Source Guard > IPv6 Source Guard Policy Setup
The following table describes the labels in this screen.
Table 138 Advanced Application > IP Source Guard > IPv6 Source Guard Policy Setup
LABEL DESCRIPTION
Name Enter a descriptive name for identification purposes for this IPv6 source guard policy.
Validate Address Select Validate Address to have IPv6 source guard forward valid addresses that are stored in
the binding table.
Validate Prefix Select Validate Prefix to have IPv6 source guard forward valid prefixes that are stored in the
binding table.
Link Local Select Permit to allow data traffic from all link-local addresses; otherwise leave the setting at
Deny. A link-local address is an IPv6 unicast address that can be automatically configured on
any interface using the link-local prefix FE80::/10 and the interface identifier in the modified
EUI-64 format.
Add Click this to create the IPv6 source guard policy or to update an existing one.
Cancel Click this to reset the values above or if not applicable, to clear the fields above.
Clear Click this to clear the fields above.
Index This field displays a sequential number for each policy.
Name This field displays the descriptive name for identification purposes for this IPv6 source guard
policy.
Validate Address This field displays the Validate Address status for this IPv6 source guard policy.
Validate Prefix This field displays the Validate Prefix status for this IPv6 source guard policy.
Link Local This field displays the Link Local traffic status for this IPv6 source guard policy.