Operation Manual – DHCP
H3C S3100 Series Ethernet Switches
Chapter 2 DHCP Snooping Configuration
2-8
Note:
z
Only the S3100-EI series among S3100 series switches support the configuration of
DHCP snooping trusted ports.S3100-SI series Ethernet switches do not support the
configuration of DHCP snooping trusted ports. That is, after DHCP snooping is
enabled, all ports of the S3100-SI series Ethernet switches are trusted ports.
z
After DHCP snooping is enabled, all ports of an S3100-EI switch are untrusted ports.
You need to specify the port of the S3100-EI switch connected to the valid DHCP
server as trusted to ensure that DHCP clients can obtain valid IP addresses. The
trusted port and the port connected to the DHCP clients must be in the same VLAN.
2.3 Configuring Unauthorized DHCP Server Detection
Note:
Only the S3100-SI series among S3100 series switches support the unauthorized
DHCP server detection.
Table 2-5
Configure unauthorized DHCP server detection
Operation
Command
Description
Enter system view
system-view
—
Enter Ethernet port view
interface interface-type
interface-number
—
Enable unauthorized
DHCP server detection
dhcp-snooping
server-guard enable
Required
Disabled by default.
Specify the method for
handling unauthorized
DHCP servers
dhcp-snooping
server-guard method
{
trap | shutdown
}
Optional
By default, the handling
method is
trap
.
Return to system view
quit
—
Specify a source MAC
address for
DHCP-DISCOVER
messages sent by the
snooping device
dhcp-snooping
server-guard
source-mac
mac-address
Optional
By default, the source
MAC address of
DHCP-DISCOVER
messages is the bridge
MAC address of the
switch.