Default Dynamic Arp Inspection Configuration - Cisco ME 3400G-2CS - Ethernet Access Switch Software Configuration Manual

Ethernet access switch
Hide thumbs Also See for ME 3400G-2CS - Ethernet Access Switch:
Table of Contents

Advertisement

Chapter 19
Configuring Dynamic ARP Inspection
You use the ip arp inspection log-buffer global configuration command to configure the number of
entries in the buffer and the number of entries needed in the specified interval to generate system
messages. You specify the type of packets that are logged by using the ip arp inspection vlan logging
global configuration command. For configuration information, see the
Configuring Dynamic ARP Inspection
These sections contain this configuration information:

Default Dynamic ARP Inspection Configuration

Table 19-1
Table 19-1
Feature
Dynamic ARP inspection
Interface trust state
Rate limit of incoming ARP packets
ARP ACLs for non-DHCP environments
Validation checks
Log buffer
Per-VLAN logging
78-17058-01
19-13.
Default Dynamic ARP Inspection Configuration, page 19-5
Dynamic ARP Inspection Configuration Guidelines, page 19-6
environments)
environments)
shows the default dynamic ARP inspection configuration.
Default Dynamic ARP Inspection Configuration
(optional)
(optional)
Default Setting
Disabled on all VLANs.
All interfaces are untrusted.
The rate is 15 pps on untrusted interfaces, assuming that
the network is a switched network with a host
connecting to as many as 15 new hosts per second.
The rate is unlimited on all trusted interfaces.
The burst interval is 1 second.
No ARP ACLs are defined.
No checks are performed.
When dynamic ARP inspection is enabled, all denied or
dropped ARP packets are logged.
The number of entries in the log is 32.
The number of system messages is limited to 5 per
second.
The logging-rate interval is 1 second.
All denied or dropped ARP packets are logged.
Cisco ME 3400 Ethernet Access Switch Software Configuration Guide
Configuring Dynamic ARP Inspection
"Configuring the Log Buffer"
(required in DHCP
(required in non-DHCP
(optional)
19-5

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents