Information About Dhcp Snooping - Cisco Nexus 1000V Troubleshooting Manual

Switch for vmware vsphere. release 5.2(1)sv3(1.1)
Hide thumbs Also See for Nexus 1000V:
Table of Contents

Advertisement

DHCP, DAI, and IPSG
This chapter describes how to identify and resolve problems related to the following security features:
This chapter includes the following sections:

Information About DHCP Snooping

DHCP snooping acts like a firewall between untrusted hosts and trusted DHCP servers by doing the
following:
Dynamic ARP inspection (DAI) and IP Source Guard also use information stored in the DHCP snooping
binding database.
For detailed information about configuring DHCP snooping, see the Cisco Nexus 1000V Security
Configuration Guide.
OL-31593-01
Dynamic Host Configuration Protocol (DHCP) snooping
Dynamic ARP Inspection (DAI)
IP Source Guard (IPSG)
Information About DHCP Snooping, page 20-1
Validates DHCP messages received from untrusted sources and filters out invalid response messages
from DHCP servers.
Builds and maintains the DHCP snooping binding database, which contains information about
untrusted hosts with leased IP addresses.
Uses the DHCP snooping binding database to validate subsequent requests from untrusted hosts.
C H A P T E R
Cisco Nexus 1000V Troubleshooting Guide, Release 5.2(1)SV3(1.1)
20
20-1

Advertisement

Table of Contents
loading

Table of Contents