C
L
OMMAND
INE
Command
ip dhcp snooping
database flash
show ip dhcp
snooping
show ip dhcp
snooping binding
ip dhcp snooping
This command enables DHCP snooping globally. Use the no form to
restore the default setting.
Syntax
[no] ip dhcp snooping
Default Setting
Disabled
Command Mode
Global Configuration
Command Usage
• Network traffic may be disrupted when malicious DHCP messages
are received from an outside source. DHCP snooping is used to filter
DHCP messages received on an unsecure interface from outside the
network or firewall. When DHCP snooping is enabled globally by this
command, and enabled on a VLAN interface by the ip dhcp
snooping vlan command (page 4-258), DHCP messages received on
an untrusted interface (as specified by the no ip dhcp snooping trust
command, page 4-259) from a device not listed in the DHCP
snooping table will be dropped.
• When enabled, DHCP messages entering an untrusted interface are
filtered based upon dynamic entries learned via DHCP snooping.
• Table entries are only learned for untrusted interfaces. Each entry
includes a MAC address, IP address, lease time, entry type
4-256
I
NTERFACE
Table 4-71 DHCP Snooping Commands
Function
Displays the static host name-to-address
mapping table
Displays the configuration for DNS
services
Displays entries in the DNS cache
Mode Page
GC
4-263
PE
4-263
PE
4-264
Need help?
Do you have a question about the 6152L2 - annexe 1 and is the answer not in the manual?
Questions and answers