Ip Arp Inspection Vlan Logging - Cisco 4500M Command Reference Manual

Command reference
Hide thumbs Also See for 4500M:
Table of Contents

Advertisement

Chapter2
Cisco IOS Commands for the Catalyst 4500 Series Switches

ip arp inspection vlan logging

To control the type of packets that are logged, use the ip arp inspection vlan logging command. Use
the no form of this command to disable this logging control.
Syntax Description
vlan-range
acl-match
matchlog
none
dhcp-bindings
permit
all
none
Defaults
All denied or dropped packets are logged.
Command Modes
Configuration
Command History
Release
12.1(19)EW
Usage Guidelines
The acl-match and dhcp-bindings keywords merge with each other; that is, when you set an ACL match
configuration, the DHCP bindings configuration is not disabled. The no form of the command can be
used to reset some of the logging criteria to their defaults. If neither option is specified, all types of
logging are reset to log on when ARP packets are denied. The two options available to you are:
78-16201-01
ip arp inspection vlan vlan-range logging {acl-match {matchlog | none} | dhcp-bindings
{permit | all | none}}
no ip arp inspection vlan vlan-range logging {acl-match | dhcp-bindings}
The number of the VLANs to be mapped to the specified instance. The number is
entered as a single value or a range; valid values are from 1to 4094.
Specifies the logging criteria for packets that are dropped or permitted based on
ACL matches.
Specifies that logging of packets matched against ACLs is controlled by the
matchlog keyword in the permit and deny access control entries of the ACL.
Note
By default, the matchlog keyword is not available on the ACEs. When the
keyword is used, denied packets are not logged. Packets are logged only
when they match against an ACE that has the matchlog keyword.
Specifies that ACL-matched packets are not logged.
Specifies the logging criteria for packets dropped or permitted based on matches
against the DHCP bindings.
Specifies logging when permitted by DHCP bindings.
Specifies logging when permitted or denied by DHCP bindings.
Prevents all logging of packets permitted or denied by DHCP bindings.
Modification
Support for this command was introduced on the Catalyst 4500 series switch.
acl-match— Logging on ACL matches is reset to log on deny
dhcp-bindings—Logging on DHCP binding compared is reset to log on deny
Catalyst4500 Series SwitchCiscoIOS Command Reference—Release 12.2(18)EW
ip arp inspection vlan logging
2-121

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ws-c4507r4500 series

Table of Contents