Ip Source Guard; Ip Source Guard Configuration - Planet Networking & Communication IGS-6329 Series User Manual

L3 industrial managed ethernet switch
Table of Contents

Advertisement

4.6.7 IP Source Guard

4.6.7.1 IP Source Guard Configuration

IP Source Guard is a secure feature used to restrict IP traffic on DHCP snooping untrusted ports by filtering traffic based on
the DHCP Snooping Table or manually configured IP Source Bindings. It helps prevent IP spoofing attacks when a host tries to
spoof and use the IP address of another host. This page provides IP Source Guard related configuration. The IP Source Guard
Configuration screen in
Figure 4-6-7-1
Figure 4-6-7-1: IP Source Guard Configuration Screen Page Screenshot
The page includes the following fields:
Object
• Mode of IP Source
Guard Configuration
• Port Mode
Configuration
• Max Dynamic Clients
appears.
Description
Enable the Global IP Source Guard or disable the Global IP Source Guard. All
configured ACEs will be lost when the mode is enabled.
Specify IP Source Guard is enabled on which ports. Only when both Global Mode
and Port Mode on a given port are enabled, IP Source Guard is enabled on this
given port.
Specify the maximum number of dynamic clients can be learned on given ports.
This value can be 0, 1, 2 and unlimited. If the port mode is enabled and the value
of max dynamic client is equal 0, it means only allow the IP packets forwarding
that are matched in static entries on the specific port.
357

Advertisement

Table of Contents
loading

This manual is also suitable for:

Igs-6329-8up2s2xIgs-6329-8up2s4x

Table of Contents