Access Interface Connectivity
Configure Access Interface Connectivity
59
Best Practice User Guide for the Catalyst 3850 and Catalyst 3650 Switch Series
Use the
show ip verify source
command to confirm that the IP source guard is configured and working.
Use the
show port-security
command to confirm that access interfaces are configured for port security.
Use the
show ip arp inspection interfaces
command to confirm the rate and untrusted state of access
interfaces.
Use the
show ipv6 nd raguard policy
command to confirm that access interfaces are configured for
Router Advertisement Guard with specific policies.
Interface Filter-type Filter-mode IP-address Mac-address Vlan
--------- ----------- ----------- --------------- ----------------- ----
Gi1/0/1 ip active deny-all 10-11
Secure Port MaxSecureAddr CurrentAddr SecurityViolation Security Action
---------------------------------------------------------------------------
---------------------------------------------------------------------------
Total Addresses in System (excluding one mac per port)
Max Addresses limit in System (excluding one mac per port) : 4096
show ip arp inspection interfaces
Interface Trust State Rate (pps) Burst Interval
--------------- ----------- ---------- --------------
show ipv6 nd raguard policy endhost_ipv6_raguard
Policy endhost_ipv6_raguard configuration:
Policy endhost_ipv6_raguard is applied on the following targets:
Target Type Policy Feature Target range
Gi1/0/1 PORT endhost_ipv6_raguard RA guard vlan all
Gi1/0/2 PORT endhost_ipv6_raguard RA guard vlan all
Содержание Catalyst 3850
Страница 2: ......
Страница 4: ......
Страница 10: ...Contents vi Cisco Catalyst 3850 Series and Cisco Catalyst 3650 Series Switches Best Practices Guide ...