Show Ip Verify Source - Cisco Catalyst 3560-X Command Reference Manual

Hide thumbs Also See for Catalyst 3560-X:
Table of Contents

Advertisement

show ip verify source

show ip verify source
Syntax Description
Command Modes
Command History
Usage Guidelines
Examples
Catalyst 3750-X and 3560-X Switch Command Reference
2-630
Downloaded from
www.Manualslib.com
Use the show ip verify source user EXEC command to display the IP source guard configuration on the
switch or on a specific interface.
show ip verify source [interface interface-id] [ | {begin | exclude | include} expression]
interface interface-id
(Optional) Display IP source guard configuration on a specific interface.
| begin
(Optional) Display begins with the line that matches the expression.
| exclude
(Optional) Display excludes lines that match the expression.
| include
(Optional) Display includes lines that match the specified expression.
expression
Expression in the output to use as a reference point.
User EXEC
Release
Modification
12.2(53)SE2
This command was introduced.
Expressions are case sensitive. For example, if you enter | exclude output, the lines that contain output
do not appear, but the lines that contain Output appear.
This is an example of output from the show ip verify source command:
Switch> show ip verify source
Interface
Filter-type
Filter-mode
---------
-----------
-----------
gi1/0/1
ip
gi1/0/1
ip
gi1/0/2
ip
gi1/0/3
ip
gi1/0/4
ip-mac
gi1/0/4
ip-mac
gi1/0/4
ip-mac
gi1/0/5
ip-mac
gi1/0/5
ip-mac
In the previous example, this is the IP source guard configuration:
On the Gigabit Ethernet 1/0/1 interface, DHCP snooping is enabled on VLANs 10 to 20. For
VLAN 10, IP source guard with IP address filtering is configured on the interface, and a binding
exists on the interface. For VLANs 11 to 20, the second entry shows that a default port access control
lists (ACLs) is applied on the interface for the VLANs on which IP source guard is not configured.
The Gigabit Ethernet 1/0/2 interface is configured as trusted for DHCP snooping.
On the Gigabit Ethernet 1/0/3 interface, DHCP snooping is not enabled on the VLANs to which the
interface belongs.
manuals search engine
Chapter 2 Catalyst 3750-X and 3560-X Cisco IOS Commands
IP-address
---------------
active
10.0.0.1
active
deny-all
inactive-trust-port
inactive-no-snooping-vlan
active
10.0.0.2
active
11.0.0.1
active
deny-all
active
10.0.0.3
active
deny-all
Mac-address
Vlan
--------------
---------
10
11-20
aaaa.bbbb.cccc
10
aaaa.bbbb.cccd
11
deny-all
12-20
permit-all
10
permit-all
11-20
OL-21522-02

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 3750-x

Table of Contents