On 01-Mar-15 13:47 PM, Gert Doering wrote: > This should be perfectly fine for ND. ND is done using fe80:: addresses, > which are *not* matched by "deny any fe00::/9" (fe80 is in the other half > of that /8). So fall through to the "permit any any" line.
IPv6 address resolution is done with multicast, so FF00:: I am wrong ? http://en.wikipedia.org/wiki/Solicited-node_multicast_address Dumitru _______________________________________________ cisco-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/
