C
ONFIGURING
THE
S
WITCH
3-234
Web
– Click DHCP Snooping, DHCP Snooping Binding Information.
Figure 3-110. DHCP Snooping Binding Information
CLI
– This example shows how to display the DHCP Snooping binding
table entries
.
IP Source Guard
IP Source Guard is a security feature that filters IP traffic on network
interfaces based on manually configured entries in the IP Source Guard
table, or static and dynamic entries in the DHCP Snooping table when
enabled (see “DHCP Snooping” on page 3-227). IP source guard can be
used to prevent traffic attacks caused when a host tries to use the IP
address of a neighbor to access the network. This section describes
commands used to configure IP Source Guard.
IP Source Guard Port Configuration
IP Source Guard is used to filter traffic on an unsecure port which receives
messages from outside the network or firewall, and therefore may be
subject to traffic attacks caused by a host trying to use the IP address of a
neighbor.
Console#show ip dhcp snooping binding
4-230
MacAddress IpAddress Lease(sec) Type VLAN
Interface
----------------- --------------- ---------- -------------------- ----
---------
11-22-33-44-55-66 192.168.0.99 0 Dynamic 1
Eth 1/5
Console#
Summary of Contents for 6152L2
Page 2: ......
Page 18: ...TABLES xiv ...
Page 32: ...INTRODUCTION 1 10 ...
Page 46: ...INITIAL CONFIGURATION 2 14 ...
Page 185: ...PORT CONFIGURATION 3 139 Figure 3 61 Displaying Etherlike and RMON Statistics ...
Page 249: ...QUALITY OF SERVICE 3 203 Figure 3 90 Configuring Policy Maps ...
Page 290: ...CONFIGURING THE SWITCH 3 244 ...
Page 303: ...COMMAND GROUPS 4 13 VC VLAN Database Configuration ...
Page 434: ...COMMAND LINE INTERFACE 4 144 ...
Page 568: ...TROUBLESHOOTING B 4 ...
Page 581: ......