Zone Protection Profile Settings—Packet Based Attack Protection
Type 0 Routing Heading
Packet Based Attack Protection
IPv4 compatible address
Discard IPv6 packets that are defined as an RFC 4291 IPv4-Compatible IPv6 address.
Anycast source address
Discard IPv6 packets that contain an anycast source address.
Needless fragment header
Discard IPv6 packets with the last fragment flag (M=0) and offset of zero.
MTU in ICMP ‘Packet Too Big’ less than 1280 bytes
Discard IPv6 packets that contain a Packet Too Big ICMPv6 message when the maximum transmission unit (MTU) is less than 1,280 bytes.
Discard IPv6 packets that contain the Hop-by-Hop Options extension header.
Discard IPv6 packets that contain the Routing extension header, which directs packets to one or more intermediate nodes on its way to its destination.
Discard IPv6 packets that contain the Destination Options extension, which contains options intended only for the destination of the packet.
Invalid IPv6 options in extension header
Discard IPv6 packets that contain invalid IPv6 options in an extension header.
Non-zero reserved field
Discard IPv6 packets that have a header with a reserved field not set to zero.