Configuring Ip Source Guard For Static Hosts On A Layer 2 Access Port - Cisco Catalyst 2960-X Security Configuration Manual

Cisco ios release 15.0(2)ex
Hide thumbs Also See for Catalyst 2960-X:
Table of Contents

Advertisement

Configuring IP Source Guard
Command or Action
Step 5
exit
Example:
Switch(config-if)# exit
Step 6
ip source binding mac-address vlan vlan-id ip-address
interface interface-id
Example:
Switch(config)# ip source binding 0100.0230.0002
vlan 11 10.0.0.4 interface gigabitethernet1/0/1
Step 7
end
Example:
Switch(config)# end
Step 8
show running-config
Example:
Switch# show running-config
Step 9
copy running-config startup-config
Example:
Switch# copy running-config startup-config

Configuring IP Source Guard for Static Hosts on a Layer 2 Access Port

You must configure the ip device tracking maximum limit-number interface configuration command globally
for IPSG for static hosts to work. If you only configure this command on a port without enabling IP device
tracking globally or by setting an IP device tracking maximum on that interface, IPSG with static hosts rejects
all the IP traffic from that interface.
OL-29048-01
Configuring IP Source Guard for Static Hosts on a Layer 2 Access Port
Purpose
Returns to global configuration mode.
Adds a static IP source binding.
Enter this command for each static binding.
Returns to privileged EXEC mode.
Verifies your entries.
(Optional) Saves your entries in the configuration file.
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
239

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents