beautypg.com

4 nd snooping troubleshooting, Nooping, Roubleshooting – PLANET XGS3-24040 User Manual

Page 210

background image

Chapter 28 DHCP Configuration

27-4

PC3: FE80::2CC:FF:FE9A:4CA2, 2001::2CC:FF:FE9A:4CA2, 2001::22:4A:1133:C422;

At the same time, three PCs send the DAD (duplicate address detect) NS packets to the link-local, ND

Snooping module receives DAD NS packets and set up the corresponding dynamic binding table according to

these packets , the table is as follows:

IPv6 address

MAC address

Port ID

FE80::2AA:FF:FE9A:4CA2

02-AA-00-9A-4C-A2

1/1

2001::2AA:FF:FE9A:4CA2

02-AA-00-9A-4C-A2

1/1

2001::23:4A:1122:C411

02-AA-00-9A-4C-A2

1/1

FE80:: BB:FF:FE9A:4CA2

02-BB-00-9A-4C-A2

1/2

2001::2BB:FF:FE9A:4CA2

02-BB-00-9A-4C-A2

1/2

2001::32:4B:2211:11C4

02-BB-00-9A-4C-A2

1/2

FE80:: CC:FF:FE9A:4CA2

02-CC-00-9A-4C-A2

1/3

2001::2CC:FF:FE9A:4CA2

02-CC-00-9A-4C-A2

1/3

2001::22:4A:1133:C422

02-CC-00-9A-4C-A2

1/3

If three PCs do not receive the responding DAD NA packets in the set time, then port 1/1, port 1/2, port 1/3

send to the FFP hardware drive binding entries according to the dynamic binding table. After that, these port

will detect the source addresses of the received data packet, if it match the binding entries, then the IPv6

packet are allowed to pass, otherwise, the IPv6 packet are denied.

Configuration steps:

SW1:

SW1(config)# ipv6 enable

SW1(config)# ipv6 nd snooping enable

SW1(config)# interface vlan 1

SW1(config-if-vlan1)# ipv6 address 2001::1/64

SW1(config)# interface ethernet 1/1; 1/2; 1/3

SW1(config-if-port-range)# ipv6 nd snooping user-control

SW2:

SW2(config)# ipv6 enable

SW2(config)# interface vlan 1

SW2(config-if-vlan1)# ipv6 address 2001::2/64

SW2(config-if-vlan1)# no ipv6 nd suppress-ra

27.4 ND Snooping Troubleshooting

If there is any problem happens when using ND Snooping, please check whether the problem is caused by

the following reasons:

 Whether ipv6 nd snooping enable is enabled globally and ipv6 nd snooping user-control is configured in

the port.

 Use debug ipv6 nd snooping to check whether the switch can correctly receive and process the relative

packets.