Enabling IPv6 Source Guard on a Port or Range of Ports

IPv6 Source Guard (IPSGv6) is disabled by default. You can enable IPSGv6 on DHCPv6 snooping untrusted ports.
  1. Enter global configuration mode.
    device# configure terminal
  2. Enter interface configuration mode.
    device(config)# interface ethernet 1/1/1
  3. Enable IPSGv6 on the port.
    device(config-if-e10000-1/1/1)# ipv6 source-guard enable
  4. To enable IPSGv6 on a range of ports, enter interface configuration mode, specifying the range of ports.
    device(config-if-e10000-1/1/1)# interface ethernet 1/1/21 to 1/1/25
    When enabling IPSGv6 on a range of ports, you can choose only a range of ports within a given slot.
  5. Enable IPSGv6 on the range of ports specified in the previous step.
    device(config-mif-1/1/21-1/1/25)# ipv6 source-guard enable

The following example enables IPSGv6 for an Ethernet interface.

device# configure terminal
device(config)# interface ethernet 1/1/1
device(config-if-e10000-1/1/1)# ipv6 source-guard enable

The following example enable IPSGv6 for a range of Ethernet interfaces.

device# configure terminal
device(config)# interface ethernet 1/1/21 to 1/1/25
device(config-mif-1/1/21 to 1/1/25)# ipv6 source-guard enable