D-Link DGS-1510 Series Reference Manual page 229

Gigabit ethernet smartpro switch
Hide thumbs Also See for DGS-1510 Series:
Table of Contents

Advertisement

DGS-1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide
Global Configuration Mode.
Command Default Level
Level: 12.
Usage Guideline
When a VLAN is enabled for ARP inspection, the ARP packets, including both the ARP request and
response packet belonging to the VLAN arriving at the untrusted interface will be validated. If the IP-
to-MAC address binding pair of the source MAC address and the source IP address is not permitted
by the ARP ACL or the DHCP snooping binding database, the ARP packet will be dropped. In
addition to the address binding check, the additional check defined by the IP ARP inspection validate
command will also be checked.
Example
This example shows how to enable ARP inspection on VLAN 2.
Switch# configure terminal
Switch(config)# ip arp inspection vlan 2
Switch(config)#
26-10
ip arp inspection vlan logging
This command is used to control the type of packets that are logged. Use the no form of this
command to revert to the default settings.
ip arp inspection vlan VLAN-ID [, | -] logging {acl-match {permit | all | none} | dhcp-bindings
{permit | all | none}}
no ip arp inspection vlan VLAN-ID [, | -] logging {acl-match | dhcp-bindings}
Parameters
vlan VLAN-ID
,
-
acl-match
acl-match permit
acl-match all
acl-match none
dhcp-bindings
dhcp-bindings permit
dhcp-bindings all
dhcp-bindings none
Default
All denied or dropped packets are logged.
Command Mode
Specifies the VLAN to enable or disable the logging control function.
(Optional) Specifies a series of interfaces, or separate a range of
interfaces from a previous range. No space is allowed before and
after the comma.
(Optional) Specifies a range of interfaces. No space is allowed
before and after the hyphen.
Specifies the logging criteria for packets that are dropped or
permitted based on ACL matches.
Specifies logging when permitted by the configured ACL.
Specifies logging when permitted or denied by the configured ACL.
Specifies that ACL-matched packets are not logged.
Specifies the logging criteria for packets dropped or permitted
based on matches against the DHCP bindings.
Specifies logging when permitted by DHCP bindings.
Specifies logging when permitted or denied by DHCP bindings.
Specifies to prevent the logging of all packets permitted or denied
by DHCP bindings.
226

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents