Chapter 12
| Security Measures
IPv4 Source Guard
– 310 –
■
SIP
– Enables traffic filtering based on IP addresses stored in the binding
table.
■
SIP-MAC
– Enables traffic filtering based on IP addresses and
corresponding MAC addresses stored in the binding table.
◆
Filter Table
– Sets the source guard learning model to search for addresses in
the ACL binding table or the MAC address binding table. (Default: ACL binding
table)
◆
Max Binding Entry
– The maximum number of entries that can be bound to an
interface. (ACL Table: 1-5, Default: 5; MAC Table: 1-32, Default: 16)
This parameter sets the maximum number of address entries that can be
mapped to an interface in the binding table, including both dynamic entries
discovered by DHCP snooping (see
entries set by IP source guard (see
“Configuring Static Bindings for IPv4 Source
Web Interface
To set the IP Source Guard filter for ports:
1.
Click Security, IP Source Guard, General.
2.
Set the required filtering type, set the table type to use ACL or MAC address
binding, and then set the maximum binding entries for each port.
3.
Click Apply.
Figure 196: Setting the Filter Type for IPv4 Source Guard
Summary of Contents for GEL-1061
Page 14: ...Contents 14...
Page 28: ...Section I Getting Started 28...
Page 38: ...Chapter 1 Introduction System Defaults 38...
Page 40: ...Section II Web Configuration 40...
Page 60: ...Chapter 2 Using the Web Interface Navigating the Web Browser Interface 60...
Page 164: ...Chapter 6 Address Table Settings Issuing MAC Address Traps 164...
Page 192: ...Chapter 8 Congestion Control Storm Control 192...
Page 204: ...Chapter 9 Class of Service Layer 3 4 Priority Settings 204...
Page 216: ...Chapter 10 Quality of Service Attaching a Policy Map to a Port 216...
Page 430: ...Chapter 14 Multicast Filtering MLD Snooping Snooping and Query for IPv4 430...
Page 436: ...Chapter 15 IP Tools Address Resolution Protocol 436...
Page 474: ...Section III Appendices 474...
Page 492: ...Glossary 492...
Page 500: ...E052016 ST R02 150200001416A...