Thanks for useful reply everyone! As I mentioned - I applied quick temporary fix by stop broadcast from router and clearing of routing table on servers. Will apply disabling of autoconfig now. On Tue, Apr 17, 2012 at 5:25 PM, Mick O'Rourke <mkorourke+nanog@gmail.com>wrote:
RA guard is useful if your tcam capacity and or switching platform allows - http://tools.ietf.org/html/draft-ietf-v6ops-ra-guard-implementation-01
An older yet still a good read from Cisco on some IPv6 first hop security:
http://www.cisco.com/en/US/docs/ios/ipv6/configuration/guide/ip6-first_hop_s...
Mick
-- Anurag Bhatia anuragbhatia.com or simply - http://[2001:470:26:78f::5] if you are on IPv6 connected network! Twitter: @anurag_bhatia <https://twitter.com/#!/anurag_bhatia> Linkedin: http://linkedin.anuragbhatia.com