NETGEAR FSM7328SNA Administration Manual page 319

7000 series managed switch administration guide for software version 8.0
Table of Contents

Advertisement

NETGEAR Managed Switches Software Administration Manual, Release 8.0
Enable DHCP snooping in a VLAN.
(Netgear Switch) (Config)# ip dhcp snooping vlan 1
Configure the port through which DHCP server is reached as trusted.
(Netgear Switch) (Config)# interface 1/0/1
(Netgear Switch) (Interface 1/0/1)# ip dhcp snooping trust
View the DHCP Snooping Binding table.
(GSM7328S) #show ip dhcp snooping binding
Total number of bindings:
MAC Address
-----------------
00:16:76:A7:88:CC
Enable ARP Inspection in the VLAN 1.
(Netgear Switch) (Config)# ip arp inspection vlan 1
Now all the ARP packets received on the ports that are member of VLAN are copied to CPU for ARP
inspection. If there are trusted ports, it can configured as trusted port as in the next step. ARP packets
received on the trusted ports are not copied to the CPU.
Configure a port 1/0/1 as trusted.
(Netgear Switch) (Config)# interface 1/0/1
(Netgear Switch) (Interface 1/0/1)# ip arp inspection trust
Now ARP packets from the DHCP client will be through since it has DHCP snooping entry, however ARP
packets from the static client is dropped, since it does have a DHCP snooping entry. It can be over come by
static configuration as described in the
Web Interface: Dynamic ARP Inspection
1.
Enable DHCP snooping globally.
Security Management
1
IP Address
VLAN
---------------
----
192.168.10.86
"Configuring Static Mapping" on page
v1.0, October 2009
Interface
Type
-----------
-------
1
1/0/2
DYNAMIC
15-41.
Lease (Secs)
-----------
86400
15-35

Advertisement

Table of Contents
loading

Table of Contents