Purpose
Command or Action
Returns to global configuration mode.
exit
Example:
Switch(config-if)#
exit
Step 5
Adds a static IP source binding.
ip source binding mac-address vlan vlan-id ip-address
interface interface-id
Step 6
Enter this command for each static binding.
Example:
Switch(config)#
ip source binding 0100.0230.0002
vlan 11 10.0.0.4 interface gigabitethernet1/0/1
Returns to privileged EXEC mode.
end
Example:
Switch(config)#
end
Step 7
Verifies your entries.
show running-config
Example:
Switch#
show running-config
Step 8
(Optional) Saves your entries in the configuration file.
copy running-config startup-config
Example:
Switch#
copy running-config startup-config
Step 9
Configuring IP Source Guard for Static Hosts on a Layer 2 Access Port
You must configure the
ip device tracking maximum limit-number
interface configuration command globally
for IPSG for static hosts to work. If you only configure this command on a port without enabling IP device
tracking globally or by setting an IP device tracking maximum on that interface, IPSG with static hosts rejects
all the IP traffic from that interface.
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
OL-29048-01
239
Configuring IP Source Guard
Configuring IP Source Guard for Static Hosts on a Layer 2 Access Port