Cisco 500 series Administration Manual page 345

Stackable managed switch
Hide thumbs Also See for 500 series:
Table of Contents

Advertisement

Configuring Security
Dynamic ARP Inspection
STEP 2
STEP 1
STEP 2
STEP 3
STEP 1
STEP 2
STEP 3
Cisco 500 Series Stackable Managed Switch Administration Guide
-
Never—Disabled SYSLOG dropped packet messages.
Click Apply. The settings are defined, and the Running Configuration file is
updated.
Defining Dynamic ARP Inspection Interfaces Settings
Packets from untrusted ports/LAGs are checked against the ARP Access Rules
table and the DHCP Snooping Binding database if DHCP Snooping is enabled (see
the DHCP Snooping Binding Database page).
By default, ports/LAGs are ARP Inspection untrusted.
To change the ARP trusted status of a port/LAG:
Click Security > ARP Inspection > Interface Settings. The
is displayed
.
The ports/LAGs and their ARP trusted/untrusted status are displayed.
To set a port/LAG as untrusted, select the port/LAG and click Edit. The Edit
Interface Settings page is displayed.
Select Trusted or Untrusted and click Apply to save the settings to the Running
Configuration file.
Defining ARP Inspection Access Control
To add entries to the ARP Inspection table:
Click Security > ARP Inspection > ARP Access Control. The
page is displayed.
To add an entry, click Add. The Add ARP Access Control page is displayed.
Enter the fields:
ARP Access Control Name—Enter a user-created name.
MAC Address—MAC address of packet.
IP Address—IP address of packet.
18
Interface Settings page
ARP Access Control
345

Advertisement

Table of Contents
loading

Table of Contents