Cli: Configure Dynamic Arp Inspection - NETGEAR M4200 Software Administration Manual

M4200 and m4300 series prosafe managed switches
Hide thumbs Also See for M4200:
Table of Contents

Advertisement

The example is shown as CLI commands and as a web interface procedure.

CLI: Configure Dynamic ARP Inspection

1.
Enable DHCP snooping globally.
(Netgear Switch) (Config)# ip dhcp snooping
2.
Enable DHCP snooping in a VLAN.
(Netgear Switch) (Config)# ip dhcp snooping vlan 1
3.
Configure the port through which the DHCP server is reached as trusted.
(Netgear Switch) (Config)# interface 1/0/1
(Netgear Switch) (Interface 1/0/1)# ip dhcp snooping trust
4.
View the DHCP Snooping Binding table.
(Netgear Switch) #show ip dhcp snooping binding
Total number of bindings:
MAC Address
IP Address
-----------------
--------------
00:16:76:A7:88:CC
192.168.10.86
If the entry does not exist in the DHCP Snooping Binding table, you can add the entry
manually through the ip verify binding mac-address vlan vlan-id
ip-address interface interface-id command in global configuration mode.
5.
Enable IP Source Guard in interface 1/0/2.
(Netgear Switch) (Interface 1/0/2)#ip verify source port-security
With this configuration, the device verifies both the source IP address and the source MAC
address. If the port-security option is skipped, the device verifies only the source IP address.
Managed Switches
1
VLAN
Interface
----
-----------
1
1/0/2
Security Management
349
Type
Lease (Secs)
-------
-----------
DYNAMIC
86400

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

M4300

Table of Contents