29
637
Examples
Example 1—The following example defines the IPv6 First Hop Security policy
named policy1, places the switch in IPv6 First Hop Security Policy Configuration
mode, and enables logging of dropped packets:
switchxxxxxx(config)#
switchxxxxxx(config-ipv6-fhs)#
switchxxxxxx(config)# exit
Example 2—The following example removes an attached IPv6 First Hop Security
policy:
switchxxxxxx(config)#
Policy policy1 is applied on the following ports:
gi11, gi12
The policy1 will be detached and removed, are you sure [Y/N]Y
29.23 ipv6 nd inspection
To enable the IPv6 Neighbor Discovery (ND) Inspection feature on a VLAN, use the
ipv6 nd inspection command in VLAN Configuration mode. To return to the default,
use the no form of this command.
Syntax
ipv6 nd inspection
no ipv6 nd inspection
Parameters
N/A
Default Configuration
ND Inspection on a VLAN is disabled.
ipv6 first hop security policy policy1
logging packet drop
no ipv6 first hop security policy policy1
Cisco Sx350 Ph. 2.2.5 Devices - Command Line Interface Reference Guide
IPv6 First Hop Security