Example
Console#show ip source-guard binding
MacAddress
----------------- --------------- ---------- -------------------- ---- ----
11-22-33-44-55-66 192.168.0.99
Console#
DHCP Snooping Commands
DHCP snooping allows a switch to protect a network from rogue DHCP servers or
other devices which send port-related information to a DHCP server. This
information can be useful in tracking an IP address back to a physical port. This
section describes commands used to configure DHCP snooping.
Command
ip dhcp snooping
ip dhcp snooping vlan
ip dhcp snooping trust
ip dhcp snooping verify
mac-address
ip dhcp snooping
information option
ip dhcp snooping
information policy
show ip dhcp snooping
show ip dhcp snooping
binding
ip dhcp snooping
This command enables DHCP snooping globally. Use the no form to restore the
default setting.
Syntax
[no] ip dhcp snooping
Default Setting
Disabled
Command Mode
Global Configuration
Command Usage
• Network traffic may be disrupted when malicious DHCP messages are
received from an outside source. DHCP snooping is used to filter DHCP
messages received on an unsecure interface from outside the network or
IpAddress
Lease(sec) Type
Table 4-78 DHCP Snooping Commands
Function
Enables DHCP snooping globally
Enables DHCP snooping on the specified VLAN
Configures the specified interface as trusted
Verifies the client's hardware address stored in the DHCP
packet against the source MAC address in the Ethernet header
Enables or disables DHCP Option 82 information relay
Sets the information option policy for DHCP client packets that
include Option 82 information
Shows the DHCP snooping configuration settings
Shows the DHCP snooping binding table entries
DHCP Snooping Commands
0 Static
4
VLAN Interface
1 Eth 1/5
Mode
Page
GC
4-231
GC
4-233
IC
4-234
GC
4-235
GC
4-235
GC
4-236
PE
4-237
PE
4-237
4-231
Need help?
Do you have a question about the SMC8126L2 and is the answer not in the manual?
Questions and answers