D-Link DGS-1510 Series Reference Manual page 314

Gigabit ethernet smartpro switch
Hide thumbs Also See for DGS-1510 Series:
Table of Contents

Advertisement

DGS-1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide
Command Mode
EXEC Mode or Any Configuration Mode.
Command Default Level
Level: 1.
Usage Guideline
Use this command to display the hardware port ACL entries for a port in the hardware table. It
indicates the hardware filter behavior that IP source guard is verified upon.
Example
This example shows how to display when DHCP snooping is enabled on VLANs 100 to 110, the
interface with IP source filter mode that is configured as IP, and that there is an existing IP address
binding 10.1.1.1 on VLAN 100.
Switch# show ip verify source interface eth3/0/3
Interface
---------
eth3/0/3
eth3/0/3
Total Entries: 2
Switch#
This example shows how to display when the interface has an IP source filter mode that is configured
as IP MAC and an existing IP MAC that binds IP address 10.1.1.10 to MAC address 00-01-01-01-01-
01 on VLAN 100 and IP address 10.1.1.11 to MAC address 00-01-01-01-01-10 on VLAN 101.
Switch# show ip verify source interface eth3/0/3
Interface
---------
eth3/0/3
eth3/0/3
eth3/0/3
Total Entries: 3
Switch#
Display Parameters
Interface
Filter-type
Filter-Mode
IP address
MAC address
Filter-type
Filter-mode IP address
-----------
----------- ---------------
ip
active
ip
active
Filter-type
Filter-mode
-----------
-----------
ip-mac
active
ip-mac
active
ip-mac
active
The interface that has IP inspection enabled.
The type of IP Source Guard in operation.
ip: Just use an IP address to authorize IP packets.
ip-mac: Use the IP and MAC address to authorize IP packets.
active: Actively verify IP source entries.
inactive-trust-port: Enable DHCP snooping to trust ports with no
IP source entry verification active.
inactive-no-snooping-vlan: No DHCP snooping VLAN configured
with no IP source entry verification active.
The client's IP address assigned from the DHCP server or
configured by the user.
The client's MAC address.
MAC address
----------------- -------
10.1.1.1
deny-all
IP address
---------------
10.1.1.10
10.1.1.11
deny-all
311
VLAN
100
101-120
MAC address
VLAN
----------------- -------
00-01-01-01-01-01 100
00-01-01-01-01-10 101
-
102-120

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents