beautypg.com

Brocade FastIron Ethernet Switch Security Configuration Guide User Manual

Page 360

background image

Syntax: enable acl-per-port-per-vlan

• Configure DHCPv6 snooping on a specific VLAN using ipv6 dhcp6 snooping vlan vlan-id. For

example:

Brocade(config)# ipv6 dhcp6 snooping vlan 10

Syntax: ipv6 dhcp6 snooping vlan vlan-id

• The trust port setting for DHCPv6 snooping can be specified per VRF. Set the port as a trust port

using dhcp6 snooping trust vrf vrf-id. For example:

Brocade(config-if-e1000-1/1/1)# dhcp6 snooping trust vrf red

Syntax: dhcp6 snooping trust vrf vrf-id

• If the client and server are not in the same VLAN, then the DHCPv6 relay agent has to be

configured on the VE interface. For example:

Brocade (config-vif-23)#ipv6 dhcp-relay destination 2001:100::2

Syntax: ipv6 dhcp-relay destination destination address for DHCPv6 Relay Agent

• To clear a DHCPv6 binding database of a specific Multi-VRF, enter the following:

Brocade(config)# clear ipv6 dhcp6 snooping vrf vrf2

Syntax: clear ipv6 dhcp6 snooping vrf vrf-id

• To clear a specific DHCPv6 binding belonging to a specific IPv6 address and VRF, enter the clear

ipv6 dhcp6 snooping ipv6-address vrf vrf-name command.

device#clear ipv6 dhcp6 snooping 2001::2 vrf vrf2

Syntax: clear ipv6 dhcp6 snooping ipv6-address vrf vrf-id

• To clear default VRF DHCPv6 snooping entries, enter the clear ipv6 dhcp6 snooping vrf default

command.

device#clear ipv6 dhcp6 snooping vrf default

Syntax: clear ipv6 dhcp6 snooping vrf default

DHCPv6

360

FastIron Ethernet Switch Security Configuration Guide

53-1003088-03