Configuring Static Bindings For Ipv4 Source Guard - Edge-Core ECS3510-10PD Management Manual

10-port layer 2
Table of Contents

Advertisement

| Security Measures
C
13
HAPTER
IPv4 Source Guard
C
ONFIGURING
S
B
TATIC
INDINGS FOR
IP
4 S
G
V
OURCE
UARD
W
I
EB
NTERFACE
To set the IP Source Guard filter for ports:
Click Security, IP Source Guard, Port Configuration.
1.
Set the required filtering type for each port.
2.
Click Apply
3.
Figure 218: Setting the Filter Type for IPv4 Source Guard
Use the Security > IP Source Guard > Static Configuration page to bind a
static address to a port. Table entries include a MAC address, IP address,
lease time, entry type (Static, Dynamic), VLAN identifier, and port
identifier. All static entries are configured with an infinite lease time, which
is indicated with a value of zero in the table.
CLI R
EFERENCES
"ip source-guard binding" on page 926
C
U
OMMAND
SAGE
Static addresses entered in the source guard binding table are
automatically configured with an infinite lease time. Dynamic entries
learned via DHCP snooping are configured by the DHCP server itself.
Static bindings are processed as follows:
If there is no entry with the same VLAN ID and MAC address, a new
entry is added to the binding table using the type "static IP source
guard binding."
If there is an entry with the same VLAN ID and MAC address, and
the type of entry is static IP source guard binding, then the new
entry will replace the old one.
If there is an entry with the same VLAN ID and MAC address, and
the type of the entry is dynamic DHCP snooping binding, then the
new entry will replace the old one and the entry type will be
changed to static IP source guard binding.
Only unicast addresses are accepted for static bindings.
– 406 –

Advertisement

Table of Contents
loading

Table of Contents