Figure 5-19 Dai Configuration Instancetopology - Zte ZXR10 2900E series Configuration Manual

Easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2900E series:
Table of Contents

Advertisement

ZXR10 2900E Series Configuration Guide
Command
zte(cfg)#
src-mac}{enable | disable}
zte(cfg)#
zte(cfg)#
zte(cfg)#
infinite}
show arp-inspection (all configuration modes)
DAI Configuration Instance
l
Configuration Description
When DHCP snooping is enabled, check ARP packet validity and the corresponding
relation between MAC, IP and VLAN. An illegal packet is dropped, and the speed of
sending ARP packets on a non-trusted port to the CPU is limited. See

Figure 5-19 DAI Configuration InstanceTopology

l
Configuration Procedure
zte(cfg)#set dhcp snooping-and-option82 enable
zte(cfg)#set dhcp snooping add port 49,50
zte(cfg)#set dhcp port 49 client
zte(cfg)#set dhcp port 50 server
zte(cfg)#show dhcp snooping
DHCP snooping is enabled on the following port(s):
PortId
------
49
50
zte(cfg)#set arp-inspection vlan 1 enable
zte(cfg)#set arp-inspection port 49 untrust
SJ-20130731155059-002|2013-11-27 (R1.0)
set arp-inspection validate {ip | dst-mac |
set arp-inspection vlan <vlanlist>{enable | disable}
set arp-inspection port <portlist>{trust | untrust}
set arp-inspection port <portlist> limit {<1-100>|
PortType
--------
Client
Server
5-70
ZTE Proprietary and Confidential
Function
Enables or disables the inspection
of each field of an ARP packet.
Enables or disables DAI function
based on the VLAN.
Sets a port to a trusted or untrusted
port.
Sets the maximum number of ARP
packets in the unit time.
Displays DAI function configuration
information.
Figure
5-19.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents