
Industrial Managed
Ethernet Switch
User Manual
錯誤
!
使用
[
常用
]
索
引標籤將
Heading
1,Product Manual
套用到您想要在此處
顯示的文字。
Page
117
of
191
AU (Standard Authorization):
Specify authorization
based on IEEE 802
.
1X
NO
: Specify disable authorization
2.14.3 IP Source Guard
IP Source Guard is another security feature in EH75XX managed switch that provides source IP address filtering
on a Layer 2 port. This is to prevent a malicious host from impersonating a legitimate host by assuming the legitimate
host
’s IP address. This security feature uses dynamic DHCP snooping and static IP source binding to match IP
addresses to hosts on untrusted Layer 2 access ports.
Figure 2.129 IP Source Guard Dropdown Menu
2.14.3.1 IP Verify Source Setting
The IP Verify Source is a dynamic IP Source Guard that creates a Layer-2 packet filtering on each port of the
EH75XX. The filter types can be IP or IP-MAC. For IP filter type, EH75XX will check only the Source IP address of
the packets. For IP-MAC filter type, EH75XX will consider both Source IP address and Source MAC address of the
packets. Figure 2.130 shows the IP Verify Source Setting webpage. To enable IP Verify Source filtering on a port,
check the corresponding Enable box and choose a Filter-type from the dropdown list. After finish configuring, click
on the
Update
button to active the filtering. After a filter was activated, all incoming packets to a configured port will
be dropped. Only the packets that conform to specific Source and MAC addresses will be allowed to pass.