Web Management Guide-R02

Table Of Contents
Chapter 12
| Security Measures
ND Snooping
– 381 –
receive an RA message in response after the configured timeout, the entry is
dropped. If the switch receives an RA message before the timeout expires, it
resets the lifetime for the dynamic binding, and the auto-detection process
resumes. (Default: Disabled)
ND Snooping Retransmit Count – Sets the number of times the auto-
detection process sends an NS message to determine if a dynamic user binding
is still valid. (Range: 1-5 seconds; Default: 3 seconds)
ND Snooping Retransmit Interval – Sets the interval between which the
auto-detection process sends NS messages to determine if a dynamic user
binding is still valid.
The timeout after which the switch will delete a dynamic user binding if no RA
message is received is set to the retransmit count multiplied by the retransmit
interval. (Range: 1-10 seconds; Default: 1 second)
ND Snooping Prefix Timeout Sets the time to wait for an RA message before
deleting an entry in the prefix table. If ND snooping is enabled and an RA
message is received on a trusted interface, the switch will add an entry in the
prefix table based upon the Prefix Information contained in the message. If an
RA message is not received for a table entry with the same prefix for the
specified timeout period, the entry is deleted.
(Range: 3-1800 seconds; Default: none set)
Web Interface
To configure ND Snooping globally for the switch:
1. Click Security, ND Snooping, Configure Global.
2. Enable ND Snooping Status and set other parameters as required.
3. Click Apply.
Figure 238: ND Snooping Global Configuration