Enabling Strict Arp Entry Learning - Huawei Quidway S9300 Configuration Manual

Terabit routing switch
Table of Contents

Advertisement

Quidway S9300 Terabit Routing Switch
Configuration Guide - Security
Pre-configuration Tasks
Before configuring the limitation on ARP entry learning, complete the following task:
l
Data Preparation
To configure the limitation on ARP entry learning, you need the following data.
No.
1

4.3.2 Enabling Strict ARP Entry Learning

Context
Strict ARP entry learning means that the S9300 learns only the response packets of the locally
sent ARP Request packets.
Procedure
l
l
Issue 06 (2010–01–08)
Setting the parameters of the link layer protocol and the IP address of the interface and
enabling the link-layer protocol
Configuring strict ARP entry learning globally
1.
Run:
system-view
The system view is displayed.
2.
Run:
arp learning strict
Strict ARP learning is enabled.
By default, strict ARP learning is disabled on the S9300.
Configuring strict ARP entry learning on an interface
1.
Run:
system-view
The system view is displayed.
2.
Run:
interface interface-type interface-number
The interface view is displayed.
The interface is a VLANIF interface.
3.
Run:
arp learning strict { force-enable | force-disable | trust }
The strict ARP entry learning function is enabled on the interface.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
4 ARP Security Configuration
Data
Type and number of the interface where you
need to configure the limitation on ARP entry
learning
4-5

Advertisement

Table of Contents
loading

Table of Contents