Figure 23-13 Configuration example when connecting terminals with a fixed IP address
You can configure DHCP snooping as described in 23.2.3 Basic configuration (when DHCP
snooping is performed via a Layer 3 switch). In the example here, the terminal with a fixed
IP address is connected to an untrusted port, and must therefore be registered in the
binding database.
To configure the above settings, use configuration commands.
Points to note
The following example sets the binding database for a terminal with a fixed IP
address.
Command examples
1.
(config)# interface fastethernet 0/2
(config-if)# switchport mode access
(config-if)# switchport access vlan 2
(config-if)# exit
Sets VLAN ID 2 for port 0/2 to which a terminal with a fixed IP address is connected.
2.
(config)# ip source binding 1234.5600.d001 vlan 2 192.168.100.254
interface fastethernet 0/2
Enters the MAC address of the terminal, the ID of the VLAN containing the terminal,
the IP address of the terminal, and the number of the port to which the terminal is
connected, in the binding database.
23.2.4 When connecting a DHCP relay agent to the Switch
When connecting a DHCP relay agent to the Switch which sends DHCP packets with
Option 82, set the Switch so that it can forward packets with Option 82.
23 DHCP Snooping
423