Difference between revisions of "First-hop security IPv6 Cisco IOS"

From Teknologisk videncenter
Jump to: navigation, search
m
m (Links)
Line 9: Line 9:
  
 
=Links=
 
=Links=
*[[http://www.cisco.com/en/US/docs/ios/ipv6/configuration/guide/ip6-first_hop_security_ps10591_TSD_Products_Configuration_Guide_Chapter.html Cisco Ipv6 first-hop security]]
+
*[http://www.cisco.com/en/US/docs/ios/ipv6/configuration/guide/ip6-first_hop_security_ps10591_TSD_Products_Configuration_Guide_Chapter.html Cisco Ipv6 first-hop security]
[Category:IPv6]
+
{{Source cli}}
 +
[[Category:IPv6]]

Revision as of 10:06, 18 December 2011

Kate.png This article is under development....

Unicast Reverse Path Forwarding

To avoid spoofed packets passing a Router. Could be DoS attack. With RPF - reverse Path Forwarding - the router checks that the sending hosts source IP address matches the routing table on the receiving interface.

Example
An access-list can be used as an option to this command
R1(config)#<input>interface fa0/1</input>
R1(config-if)#ipv6 verify unicast reverse-path

Links