We are planning on enabling ipv6 First Hop Security. We are considering following options
- SISF based device tracking
- RA Guard
- IPv6 DHCP Guard
a. Are these sufficient for access switches? Is there anything else we should considering SISF is comprehensive?
b. Does it requires DHCP snooping and ARP inspection to be enabled separately as well? I know DHCP snooping is part of SISF but I am not sure of ARP inspection.
Thanks