IPv6 First Hop Security
Cisco Sx350 Ph. 2.2.5 Devices - Command Line Interface Reference Guide
User Guidelines
This command is used to add static entries to the Neighbor Binding table. Static
entries can be configured regardless the port role.
If the entry (dynamic or static) already exists, the new static entry overrides the
existing one.
If the Neighbor Binding table overflows, the static entry is not added.
Example
The following example adds a static entry:
switchxxxxxx(config)#
interface gi11 mac 00BB.CC01.F500
29.49 ipv6 source guard
To enable the IPv6 Source Guard feature on a VLAN, use the ipv6 source guard
command in VLAN Configuration mode. To return to the default, use the no form of
this command.
Syntax
ipv6 source guard
no ipv6 source guard
Parameters
N/A
Default Configuration
Source Guard on a VLAN is disabled.
Command Mode
Interface (VLAN) Configuration mode
User Guidelines
IPv6 Source Guard blocks an IPv6 data message arriving on a port if its source
IPv6 address is bound to another port, or it is unknown.
ipv6 neighbor binding static ipv6 2001:600::1 vlan 100
29
674