Web – Click DHCP Snooping, DHCP Snooping Binding Information.
Figure 3-110. DHCP Snooping Binding Information
CLI – This example shows how to display the DHCP Snooping binding
table entries
Console#show ip dhcp snooping binding
MacAddress
Interface
----------------- --------------- ---------- -------------------- ----
---------
11-22-33-44-55-66 192.168.0.99
Eth 1/5
Console#
IP Source Guard
IP Source Guard is a security feature that filters IP traffic on network
interfaces based on manually configured entries in the IP Source Guard
table, or static and dynamic entries in the DHCP Snooping table when
enabled (see "DHCP Snooping" on page 3-230). IP source guard can be
used to prevent traffic attacks caused when a host tries to use the IP
address of a neighbor to access the network. This section describes
commands used to configure IP Source Guard.
IP Source Guard Port Configuration
IP Source Guard is used to filter traffic on an unsecure port which receives
messages from outside the network or firewall, and therefore may be
subject to traffic attacks caused by a host trying to use the IP address of a
neighbor.
.
IpAddress
Lease(sec) Type
0 Dynamic
IP S
G
OURCE
UARD
4-278
VLAN
1
3-237