Block all IPv6 traffic
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎05-31-2017 09:36 AM
How can i block all ipv6 trafic in xos?
9 REPLIES 9
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎06-06-2017 09:54 AM
i work at a very large campus.
A lot of routers are installed everyday without our knowledge.
I'm concerned with those routers acting as IPv6 dhcp-servers.
We have trusted ports well configured, but i suspect that it doesn't work for IPv6.
Since we don't have IPv6 for users, i think that if we block it, that problem is solved for now.
A lot of routers are installed everyday without our knowledge.
I'm concerned with those routers acting as IPv6 dhcp-servers.
We have trusted ports well configured, but i suspect that it doesn't work for IPv6.
Since we don't have IPv6 for users, i think that if we block it, that problem is solved for now.
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎06-06-2017 09:54 AM
Hi Gerson,
Any specific reason to do this on L2 level? Is IPv6 traffic inside a client VLAN only matter to you since it will not gatewaying if you don't put IPv6 address on your L3? I think the L2 way only works if all your clients connected directly to your controllable switch, if not L3 way is more simple since the traffic will only reach your controllable switch for gatewaying or accessing different connected ports clients (or client switches) on the same VLAN.
Best regards,
Any specific reason to do this on L2 level? Is IPv6 traffic inside a client VLAN only matter to you since it will not gatewaying if you don't put IPv6 address on your L3? I think the L2 way only works if all your clients connected directly to your controllable switch, if not L3 way is more simple since the traffic will only reach your controllable switch for gatewaying or accessing different connected ports clients (or client switches) on the same VLAN.
Best regards,
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎06-05-2017 02:23 AM
Exos does not work that way, almost every acl action is done on all packets, no matter if it is l2 switched or routed.
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎06-05-2017 02:23 AM
ACL is done in Hardware (asic).
