ProCurve(config)# show dhcp-snooping stats
Packet type
Action
-----------
-------
server
forward
client
forward
server
drop
server
drop
client
drop
client
drop
client
drop
client
drop
Figure 10-2. Example of Show DHCP Snooping Statistics
Enabling DHCP Snooping on VLANS
DHCP snooping on VLANs is disabled by default. To enable DHCP snooping
on a VLAN or range of VLANs enter this command:
ProCurve(config)# dhcp-snooping vlan <vlan-id-range>
You can also use this command in the vlan context, in which case you cannot
enter a range of VLANs for snooping.
Below is an example of DHCP snooping enabled on VLAN 4.
ProCurve(config)# dhcp-snooping vlan 4
ProCurve(config)# show dhcp-snooping
DHCP Snooping Information
DHCP Snooping
Enabled Vlans
Verify MAC
Option 82 untrusted policy : drop
Option 82 Insertion
Option 82 remote-id
Figure 10-3. Example of DCHP Snooping on a VLAN
Configuring Advanced Threat Protection
Reason
----------------------------
from trusted port
to trusted port
received on untrusted port
unauthorized server
destination on untrusted port
untrusted option 82 field
bad DHCP release request
failed verify MAC check
: Yes
: 4
: Yes
: Yes
: mac
DHCP Snooping
Count
---------
8
8
2
0
0
0
0
0
10-7