Configuring IPv6 First Hop Security
4. exit
5. show ipv6 nd raguard policy [policy-name]
6. debug ipv6 snooping raguard [filter | interface | vlanid]
DETAILED STEPS
Command or Action
Step 1
configure terminal
Example:
Device# configure terminal
Step 2
interface type number
Example:
Device(config)# interface ethernet 1/1
Example:
Device(config)# vlan configuration 10
Step 3
ipv6 nd raguard attach-policy [policy-name]
Example:
Device(config-if)# ipv6 nd raguard attach-policy
Step 4
exit
Example:
Device(config-if)# exit
Step 5
show ipv6 nd raguard policy [policy-name]
Example:
switch# show ipv6 nd raguard policy host
Policy host configuration:
device-role host
Policy applied on the following interfaces:
Et0/0
Et1/0
Step 6
debug ipv6 snooping raguard [filter | interface | vlanid]
Example:
Device# debug ipv6 snooping raguard
vlan all
vlan all
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
Configuring IPv6 RA Guard on an Interface
Purpose
Enters global configuration mode.
Specifies an interface type and number, and places the
device in interface or VLAN configuration mode.
Applies the IPv6 RA Guard feature to a specified interface.
Exits interface configuration mode.
Displays the RA guard policy on all interfaces configured
with the RA guard.
Enables debugging for IPv6 RA guard snooping
information.
379