3 ipv6 security ra typical examples, Ecurity, Ypical – PLANET WGSW-52040 User Manual

Page 408: Xamples

Advertising
background image

ipv6 security-ra enable

no ipv6 security-ra enable

Enable and disable IPv6 security RA in port

configuration mode.

3. Display and debug the relative information of IPv6 security RA

Command Explanation

Admin Mode

debug ipv6 security-ra

no debug ipv6 security-ra

Enable the debug information of IPv6

security RA module, the no operation of

this command will disable the output of

debug information of IPv6 security RA.

show ipv6 security-ra [interface

<interface-list>

]

Display the distrust port and whether

globally security RA is enabled.

49.3 IPv6 Security RA Typical Examples

Other IPv6 network

PC User

RA

Ethernet1/1

Ethernet1/2

RA

X

Ethernet1/3

Illegal User

Figure 49-1: IPv6 Security RA sketch map

Instructions: if the illegal user in the graph advertises RA, the normal user will receive the RA,

set the default router as the vicious IPv6 host user and change its own address. This will cause

the normal user to not be able to connect the network. We want to set security RA on the 1/2

port of the switch, so that the RA from the illegal user will not affect the normal user.

49-187

Advertising