Defining Dynamic Arp Inspection Interfaces Settings; Defining Arp Inspection Access Control - Cisco SF500-24 Administration Manual

Esw2 series advanced switches
Hide thumbs Also See for SF500-24:
Table of Contents

Advertisement

Security
Dynamic ARP Inspection
STEP 2
STEP 1
STEP 2
STEP 3
STEP 1
STEP 2
STEP 3
Cisco 500 Series Stackable Managed Switch Administration Guide Release 1.3
-
Never—Disabled SYSLOG dropped packet messages.
Click Apply. The settings are defined, and the Running Configuration file is
updated.

Defining Dynamic ARP Inspection Interfaces Settings

Packets from untrusted ports/LAGs are checked against the ARP Access Rules
table and the DHCP Snooping Binding database if DHCP Snooping is enabled (see
the DHCP Snooping Binding Database page).
By default, ports/LAGs are ARP Inspection untrusted.
To change the ARP trusted status of a port/LAG:
Click Security > ARP Inspection > Interface Settings.
The ports/LAGs and their ARP trusted/untrusted status are displayed.
To set a port/LAG as untrusted, select the port/LAG and click Edit.
Select Trusted or Untrusted and click Apply to save the settings to the Running
Configuration file.

Defining ARP Inspection Access Control

To add entries to the ARP Inspection table:
Click Security > ARP Inspection > ARP Access Control.
To add an entry, click Add.
Enter the fields:
ARP Access Control Name—Enter a user-created name.
MAC Address—MAC address of packet.
IP Address—IP address of packet.
20
422

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents