29
639
Syntax
ipv6 nd inspection attach-policy
no ipv6 nd inspection attach-policy [
Parameters
•
policy-name
—The ND Inspection policy name (up to 32 characters).
•
vlan-list
vlan
—Specifies that the ND Inspection policy is to be attached to
the VLAN(s) in
applied to all VLANs on the device on which ND Inspection is enabled.
Default Configuration
The ND Inspection default policy is applied.
Command Mode
Interface (Ethernet, Port Channel) Configuration mode
User Guidelines
Use the ipv6 nd inspection attach-policy command to attach an ND Inspection
policy to a port.
Use the
ipv6 nd inspection
VLANs.
Each time the command is used, it overrides the previous command within the
same policy.
If a policy specified by the
rejected.
Multiple policies with the vlan keyword can be attached to the same port if they
do not have common VLANs.
The set of rules that is applied to an input packet is built in the following way:
•
The rules, configured in the policy attached to the port on the VLAN on
which the packet arrived are added to the set.
•
The rules, configured in the policy attached to the VLAN are added to the
set if they have not been added.
•
The global rules are added to the set if they have not been added.
policy-name
policy-name
vlan-list
. If the vlan keyword is not configured, the policy is
command to activate the attached policy on required
policy-name
argument is not defined, the command is
Cisco Sx350 Ph. 2.2.5 Devices - Command Line Interface Reference Guide
IPv6 First Hop Security
vlan-list
[vlan
]
]