General Security Measures
3-151
3
Command Attributes
•
Filter Type
– Configures the switch to filter inbound traffic based source IP
address, or source IP address and corresponding MAC address. (Default: None)
•
None
– Disables IP source guard filtering on the port.
•
SIP
– Enables traffic filtering based on IP addresses stored in the binding table.
•
SIP-MAC
– Enables traffic filtering based on IP addresses and corresponding
MAC addresses stored in the binding table.
Web
– Click IP Source Guard, Port Configuration. Set the required filtering type for
each port and click Apply.
Figure 3-89 IP Source Guard Port Configuration
CLI
– This example shows how to enable IP source guard on port 5 to check the
source IP address for ingress packets against the binding table
.
Console(config)#interface ethernet 1/5
Console(config-if)#ip source-guard sip
4-187
Console(config-if)#end
Console#show ip source-guard
4-190
Interface Filter-type
--------- -----------
Eth 1/1 DISABLED
Eth 1/2 DISABLED
Eth 1/3 DISABLED
Eth 1/4 DISABLED
Eth 1/5 SIP
Eth 1/6 DISABLED
.
.
Summary of Contents for 6152PL2 FICHE
Page 2: ......
Page 6: ...vi ...
Page 8: ...viii ...
Page 32: ...Tables xxxii ...
Page 38: ...Figures xxxviii ...
Page 56: ...Initial Configuration 2 10 2 ...
Page 378: ...Configuring the Switch 3 322 3 ...
Page 817: ......