Configuring Device Security
Defining DHCP Snooping
Cisco Small Business SFE/SGE Managed Switches Administration Guide
137
4
•
IPv4 traffic — Only IPv4 traffic with a source IP address that is associated
with the specific port is permitted.
•
Non IPv4 traffic — All non-IPv4 traffic is permitted.
NOTE:
IP Source Guard must be enabled globally in the
IP Source Guard
Properties Page
before it can be enabled on the device interfaces.
If a port is trusted, filtering of static IP addresses can be configured, although IP
Source Guard is not active in that condition.
If a port’s status changes from untrusted to trusted, the static IP address filtering
entries remain but become inactive.
STEP 1
Click Security Suite > DHCP Snooping > IP Source Guard > Interface Settings. The
IP Source Guard Interface Settings Page
opens:
IP Source Guard Interface Settings Page
The
IP Source Guard Interface Settings Page
contains the following fields:
•
Ports of Unit — Displays the stacking unit’s port number on which the IP source
guard is enabled.
•
LAGs — Displays the stacking unit’s LAG number on which the IP source guard
is enabled.
•
Interface — Indicates the port’s or LAG’s number.