ipv6-source-guard
Syntax
ipv6-source-guard;
Hierarchy Level
For platforms with Enhanced Layer 2 Software (ELS):
[edit vlans vlan-name forwarding-options dhcp-security];
For platforms without ELS:
[edit ethernet-switching-options secure-access-port vlan (all | vlan-name)]
Description
Perform IPv6 source guard checking on packets sent from access interfaces. Validate source IP addresses and source MAC addresses on all VLANs or on the specified VLAN. Forward packets with valid addresses and drop those with invalid addresses.
If you configure the ipv6-source-guard
statement
at the [edit vlans vlan-name forwarding-options
dhcp-security]
hierarchy level, DHCPv6 snooping is automatically
enabled for the specified VLAN.
If you configure the ipv6-source-guard
statement
at the [edit ethernet-switching-options secure-access-port vlan vlan-name]
hierarchy level, you must also enable
DHCPv6 snooping for the specified VLAN.
Default
Disabled.
Required Privilege Level
system—To view this statement in the configuration.
system-control—To add this statement to the configuration.
Release Information
Statement introduced in Junos OS Release 13.2X51-D20.
Support at the [edit ethernet-switching-options secure-access-port
vlan (all | vlan-name)]
hierarchy level
introduced in Junos OS Release 14.1X53-D10 for EX Series switches.