ipv6 raguard whitelist

Configures the Router Advertisement (RA) guard whitelist and adds the IPv6 address as the allowed source IP address.
Syntax
ipv6 raguard whitelist whitelist-number permit ipv6-address
no ipv6 raguard whitelist whitelist-number permit ipv6-address
Parameters
whitelist-number
Configures the unique identifier for the RA guard whitelist. Valid values are 0 to 255.
permit
Configures the specified IPv6 address as the allowed source IP address to the RA guard whitelist.
ipv6-address
Configures the source IPv6 address. The address should be in the format X:X::X:X or X:X::X:X/M.
Modes

Global configuration mode

Usage Guidelines

You can configure source IP addresses from which RAs are permitted.

You can configure up to 64 RA guard whitelists, and each whitelist can have a maximum of 128 entries.

To remove the RA guard whitelist, use the no form the command without the permit keyword.

To remove a particular IPv6 address from the whitelist, use the no form of the command with the permitipv6-address keyword-variable pair.

When a whitelist associated with an RA guard policy is removed, all the entries in the whitelist are also removed. All the RAs are dropped because there is no whitelist associated with the RA guard policy.

Examples

The following example configures an RA guard whitelist with the allowed source IP address:

device(config)# ipv6 raguard whitelist 1 permit fe80:db8::db8:10

The following example removes an RA guard whitelist:

device(config)# no ipv6 raguard whitelist 1

The following example removes a particular IPv6 address from the RA guard whitelist:

device(config)# no ipv6 raguard whitelist 1 permit fe80:db8::db8:10