Static Flag — Use this flag to determine whether the ARP packet needs validation using the DHCP
•
snooping database, in case the ARP ACL rules do not match. If Enabled, then the ARP Packet will be
validated by the ARP ACL Rules only. If Disabled, then the ARP Packet needs further validation by
using the DHCP Snooping entries. The default is Disable.
Configuring Dynamic ARP Inspection VLANs With CLI Commands
For information about the CLI commands that perform this function, refer to the following chapter in
CLI Reference Guide
the
•
Dynamic ARP Inspection Commands
The following table summarizes the equivalent CLI commands for this feature.
Table 7-60. Dynamic ARP Inspection VLAN Commands
CLI Command
ip arp inspection filter
ip arp inspection vlan
show ip arp inspection vlan
DAI ACL Configuration
Use the DAI ARP ACL Configuration page to add or remove DAI ARP ACLs.
To display the DAI ARP ACL Configuration page, click Switching → Dynamic ARP Inspection → ACL
Configuration in the navigation tree.
Figure 7-109. Dynamic ARP Inspection ARP ACL Configuration
The Dynamic ARP Inspection ARP ACL Configuration page contains the following field:
442
Configuring Switching Information
:
Description
Configures the ARP ACL to be used for a single VLAN or a range of
VLANs to filter invalid ARP packets.
Enables Dynamic ARP Inspection on a single VLAN or a range of
VLANs.
Displays the Dynamic ARP Inspection configuration on all the VLANs
in the given VLAN range.