IPv6 Source Guard uses the IPv6 First-Hop Security Binding Table to drop traffic from unknown
sources or bogus IPv6 addresses not in the binding table. The switch also tries to recover from lost
address information, querying DHCPv6 server or using IPv6 neighbor discovery to verify the source
IPv6 address after dropping the offending packet(s).
[Reference: https://blog.ipspace.net/2013/07/first-hop-ipv6-security-features-in.html, , , , , ]
Submit