Show Ip Verify Source - Cisco Catalyst 3750-X Command Reference Manual

Cisco ios release 15.2(1)e and later
Hide thumbs Also See for Catalyst 3750-X:
Table of Contents

Advertisement

Chapter 2 Catalyst 3750-X and 3560-X Switch Cisco IOS Commands

show ip verify source

Use the show ip verify source user EXEC command to display the IP source guard configuration on the
switch or on a specific interface.
Syntax Description
interface interface-id
Command Modes
User EXEC
Command History
Release
12.2(53)SE2
Examples
This is an example of output from the show ip verify source command:
Switch> show ip verify source
Interface
---------
gi1/0/1
gi1/0/1
gi1/0/2
gi1/0/3
gi1/0/4
gi1/0/4
gi1/0/4
gi1/0/5
gi1/0/5
In the previous example, this is the IP source guard configuration:
OL-29704-01
show ip verify source [interface interface-id]
(Optional) Display IP source guard configuration on a specific interface.
Modification
This command was introduced.
Filter-type
Filter-mode
-----------
-----------
ip
ip
ip
ip
ip-mac
ip-mac
ip-mac
ip-mac
ip-mac
On the Gigabit Ethernet 1/0/1 interface, DHCP snooping is enabled on VLANs 10 to 20. For
VLAN 10, IP source guard with IP address filtering is configured on the interface, and a binding
exists on the interface. For VLANs 11 to 20, the second entry shows that a default port access control
lists (ACLs) is applied on the interface for the VLANs on which IP source guard is not configured.
The Gigabit Ethernet 1/0/2 interface is configured as trusted for DHCP snooping.
On the Gigabit Ethernet 1/0/3 interface, DHCP snooping is not enabled on the VLANs to which the
interface belongs.
On the Gigabit Ethernet 1/0/4 interface, IP source guard with source IP and MAC address filtering
is enabled, and static IP source bindings are configured on VLANs 10 and 11. For VLANs 12 to 20,
the default port ACL is applied on the interface for the VLANs on which IP source guard is not
configured.
On the Gigabit Ethernet 1/0/5 interface, IP source guard with source IP and MAC address filtering
is enabled and configured with a static IP binding, but port security is disabled. The switch cannot
filter source MAC addresses.
IP-address
---------------
active
10.0.0.1
active
deny-all
inactive-trust-port
inactive-no-snooping-vlan
active
10.0.0.2
active
11.0.0.1
active
deny-all
active
10.0.0.3
active
deny-all
Catalyst 3750-X and 3560-X Switch Command Reference
show ip verify source
Mac-address
Vlan
--------------
---------
10
11-20
aaaa.bbbb.cccc
10
aaaa.bbbb.cccd
11
deny-all
12-20
permit-all
10
permit-all
11-20
2-687

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 3560-x

Table of Contents