beautypg.com

Configuring dhcpv6 snooping – H3C Technologies H3C S3100 Series Switches User Manual

Page 923

background image

1-20

To do…

Use the command

Remarks

Enter Layer-2 Ethernet interface
view

interface interface-type
interface-number

Configure the ports requiring no
user legality check as ND trusted
ports

ipv6 nd detection trust

Optional

A port is ND untrusted by default

When configuring the ND detection, configure at least one of the following three: the IPv6 static binding

entry, DHCPv6 snooping, or ND snooping. Otherwise, all the ND packets received from ND untrusted

ports are discarded.

Configuring DHCPv6 Snooping

Among the S3100 series Ethernet switches, only the S3100-EI series support DHCPv6 Snooping.

Configuring DHCPv6 snooping

Follow these steps to configure DHCPv6 snooping:

To do…

Use the command…

Remarks

Enter system view

system-view

Enable DHCPv6 snooping

dhcp-snooping ipv6 enable

Required

Disabled by default.

Enter Ethernet interface view

interface interface-type
interface-number

Specify the port as trusted

dhcp-snooping ipv6 trust

Required

Untrusted by default.

Configure the maximum number of
DHCPv6 snooping entries an
interface can learn

dhcp-snooping ipv6
max-learning-num
number

Optional

By default, the number of DHCPv6
snooping entries an interface can
learn is unlimited.

You need to specify the ports connected to the valid DHCPv6 servers as trusted to ensure that DHCPv6

clients can obtain valid IPv6 addresses. The trusted port and the port connected to the DHCPv6 client

must be in the same VLAN.