What does this IPv6 snooping policy accomplish?
- It requires manual address configuration
- It blocks all ND messages
- It only allows 5 DHCPv6 servers on the network
- It limits each port to 5 IPv6 addresses
Explanation: According to the sources, IPv6 Snooping is a bundle of security features that captures IPv6 traffic by gathering addresses from control messages such as NDP or DHCP to build a binding table .
The foundation of this feature is IPv6 address gleaning, which inspects these messages to populate the table and enforce address ownership .
Crucially, this mechanism limits the number of addresses any given node or port is allowed to claim .
Therefore, an IPv6 snooping policy is used to limit each port to a specific number of IPv6 addresses, effectively preventing resource exhaustion and mitigating address spoofing attacks .
Related exam: CCNP ENARSI v9 Course Final Exam
