Chapter 34
Configuring DHCP Snooping
Configuring the DHCP Trust State on Layer 2 LAN Interfaces
To configure DHCP trust state on a Layer 2 LAN interface, perform this task:
Command
Step 1
Router(config)# interface {type
port-channel number}
Step 2
Router(config-if)# ip dhcp snooping trust
Router(config-if)# no ip dhcp snooping trust
Step 3
Router(config-if)# do show ip dhcp snooping |
begin pps
1.
type = ethernet, fastethernet, gigabitethernet, or tengigabitethernet
This example shows how to configure Fast Ethernet port 5/12 as trusted:
Router# configure terminal
Router(config)# interface FastEthernet 5/12
Router(config-if)# ip dhcp snooping trust
Router(config-if)# do show ip dhcp snooping | begin pps
Interface
------------------------
FastEthernet5/12
Router#
This example shows how to configure Fast Ethernet port 5/12 as untrusted:
Router# configure terminal
Router(config)# interface FastEthernet 5/12
Router(config-if)# no ip dhcp snooping trust
Router(config-if)# do show ip dhcp snooping | begin pps
Interface
------------------------
FastEthernet5/12
Router#
OL-11439-03
1
slot/port |
Trusted
-------
yes
Trusted
-------
no
Catalyst Supervisor Engine 32 PISA Cisco IOS Software Configuration Guide, Release 12.2ZY
Purpose
Selects the interface to configure.
Note
Select only LAN ports configured with the
switchport command or Layer 2 port-channel
interfaces.
Configures the interface as trusted.
Reverts to the default (untrusted) state.
Verifies the configuration.
Rate limit (pps)
----------------
unlimited
Rate limit (pps)
----------------
unlimited
Configuring DHCP Snooping
34-11