ipv6 nd raguard attach-policy
ipv6 nd raguard attach-policy
To apply the IPv6 router advertisement (RA) guard feature on a specified interface, use the ipv6 nd raguard
attach-policy command in interface configuration mode.
ipv6 nd raguard attach-policy [policy-name [vlan {add| except| none| remove| all} vlan [vlan1, vlan2,
vlan3...]]]
Syntax Description
policy-name
vlan
add
except
none
remove
all
vlan
Command Default
An IPv6 RA guard policy is not configured.
Command Modes
Interface configuration (config-if)
Command History
Release
8.0(1)
Usage Guidelines
If no policy is specified using the policy-name argument, the port device role is set to host and all inbound
router traffic (for example, RA and redirect messages) is blocked.
Cisco Nexus 7000 Series Security Command Reference
448
(Optional) IPv6 RA guard policy name.
(Optional) Applies the IPv6 RA guard feature to a
VLAN on the interface.
Adds a VLAN to be inspected.
All VLANs are inspected except the one specified.
No VLANs are inspected.
Removes the specified VLAN from RA guard
inspection.
ND traffic from all VLANs on the port is inspected.
(Optional) A specific VLAN on the interface. More
than one VLAN can be specified (vlan1, vlan2,
vlan3...). The range of available VLAN numbers is
from 1 through 4094.
Modification
This command was introduced.
I Commands