[j-nsp] Helo Juniper, your docs need work..
Phil Mayers
p.mayers at imperial.ac.uk
Fri Feb 13 07:06:43 EST 2015
On 13/02/15 10:34, Harald wrote:
> On 13.02.2015 11:13, Phil Mayers wrote:
>> Yes, we shouted at them about that. Hardware limitation. Can't be
>> fixed, we were told. Made the EX3300 unsuitable for our needs since
>> you can't do any form of RA guard, which is unfortunate as it's
>> otherwise a nice box.
> RA-guard was implemented in 14.1X53D10 on EX2200 and EX3300 along with
> ND-inspection, IPv6 source-guard and DHCPv6 guard/snooping.
I vaguely recall them saying they were going to do this. Have you tried
it? Does it work ok?
If that was all we needed, that might be sufficient, but we were
reluctant to buy a device which would be in service for 3 years or more
without the ability to block on IPv6 address / UDPv6/TCPv6 ports.
More information about the juniper-nsp
mailing list