Ip Arp Inspection Trust - Cisco ME 3400 Command Reference Manual

Ethernet access switch
Table of Contents

Advertisement

ip arp inspection trust

ip arp inspection trust
Use the ip arp inspection trust interface configuration command to configure an interface trust state
that determines which incoming Address Resolution Protocol (ARP) packets are inspected. Use the no
form of this command to return to the default setting.
Syntax Description
This command has no arguments or keywords.
Defaults
The interface is untrusted.
Command Modes
Interface configuration
Command History
Release
12.2(25)EX
12.2(50)SE
Usage Guidelines
The switch does not check ARP packets that it receives on the trusted interface; it simply forwards the
packets.
For untrusted interfaces, the switch intercepts all ARP requests and responses. It verifies that the
intercepted packets have valid IP-to-MAC address bindings before updating the local cache and before
forwarding the packet to the appropriate destination. The switch drops invalid packets and logs them in
the log buffer according to the logging configuration specified with the ip arp inspection vlan logging
global configuration command.
Examples
This example shows how to configure a port to be trusted:
Switch(config)# interface gigabitethernet0/1
Switch(config-if)# ip arp inspection trust
You can verify your setting by entering the show ip arp inspection interfaces interface-id privileged
EXEC command.
Related Commands
Command
ip arp inspection log-buffer
Cisco ME 3400 Ethernet Access Switch Command Reference
2-144
ip arp inspection trust
no ip arp inspection trust
Modification
This command was introduced.
The command was supported in the metro base image.
Chapter 2
Cisco ME 3400 Ethernet Access Switch Cisco IOS Commands
Description
Configures the dynamic ARP inspection logging buffer.
OL-9640-10

Advertisement

Table of Contents
loading

Table of Contents