Arp Security Violation - Allied Telesis x310-26FT Command Reference Manual

X310 series stackable access switches for alliedware plus version 5.4.6-1.x
Table of Contents

Advertisement

DHCP S
C
NOOPING
OMMANDS

ARP SECURITY VIOLATION

arp security violation
Overview
Use this command to specify an additional action to perform if an ARP security
violation is detected on the ports. ARP security must also be enabled
command).
Use the no variant of this command to remove the specified action, or all actions.
Traffic violating ARP security will be dropped, but no other action will be taken.
arp security violation {log|trap|link-down} ...
Syntax
no arp security violation [log|trap|link-down] ...
Default
When the switch detects an ARP security violation, it drops the packet. By default,
it does not perform any other violation actions.
Mode
Interface Configuration (switch ports, static or dynamic aggregated links)
Usage
When the switch detects an ARP security violation on an untrusted port in a VLAN
that has ARP security enabled, it drops the packet. This command sets the switch
to perform additional actions in response to ARP violations.
If a port has been shut down in response to a violation, to bring it back up again
after any issues have been resolved, use the
Example
To send SNMP notifications for ARP security violations on ports 1.0.1 to 1.0.6, use
the commands:
awplus#
awplus(config)#
awplus(config)#
awplus(config-if)#
C613-50103-01 REV A
Parameter
Description
log
Generate a log message. To display these messages, use the
command.
trap
Generate an SNMP notification (trap). To send SNMP notifications,
SNMP must also be configured, and DHCP snooping notifications must
be enabled using the
Notifications are limited to one per second and to one per source MAC
and violation reason. Additional violations within a second of a
notification being sent will not result in further notifications.
Default: disabled.
link-down
Shut down the port that received the packet.
Default: disabled.
configure terminal
snmp-server enable trap dhcpsnooping
interface port1.0.1-port1.0.6
Command Reference for x310 Series
AlliedWare Plus™ Operating System - Version 5.4.6-1.x
snmp-server enable trap
shutdown
arp security violation trap
(arp security
show log
command.
command.
1849

Advertisement

Table of Contents
loading

This manual is also suitable for:

X310-26fpX310-50fpX310-50ft

Table of Contents