211
To do…
Use the command…
Remarks
2.
Enter Layer 2 interface view.
interface
interface-type
interface-
number
—
3.
Configure a static IPv4 source
guard binding entry on the
port.
ip source binding
{
ip-address
ip-
address
|
ip-address
ip-address
mac-address
mac-address
|
mac-
address
mac-address
}
Required.
By default, no static IPv4 binding
entry is configured on a port.
You cannot repeatedly configure the same static binding entry on one port, but you can configure the
same static entry on different ports.
If a static binding entry to be added denotes the same binding as an existing dynamic binding entry, the
new static binding entry overwrites the dynamic binding entry.
Setting the maximum number of IPv4 source guard binding
entries
The maximum number of IPv4 source guard binding entries is used to limit the total number of static and
dynamic IPv4 source guard binding entries on a port. When the number of IPv4 binding entries on a
port reaches the maximum, the port does not allow new IPv4 binding entries anymore.
To configure the maximum number of IPv4 binding entries allowed on a port:
To do…
Use the command…
Remarks
1.
Enter system view.
system-view
—
2.
Enter Layer 2 Ethernet
interface view.
interface
interface-type
interface-
number
—
3.
Configure the maximum
number of IPv4 binding
entries allowed on the port.
ip verify source max-entries
number
Optional
256 by default
If the maximum number of IPv4 binding entries to be configured is smaller than the number of existing
IPv4 binding entries on the port, the maximum number can be configured successfully, and the existing
entries are not affected. New IPv4 binding entries, however, cannot be added unless the number of IPv4
binding entries on the port drops below the configured maximum.
Configuring the IPv6 source guard function
You cannot configure the IPv6 source guard binding function on a port in an aggregation group or a
service loopback group, nor can you add a port configured with IP source guard to an aggregation
group or a service loopback group.
Configuring IPv6 source guard on a port
The IPv6 source guard function must be configured on a port before the port can obtain dynamic IPv6
source guard binding entries and use static and dynamic IPv6 source guard entries to filter packets.
For information about how to configure a static IPv6 static binding entry, see "
."
Содержание A5830 Series
Страница 207: ...199 Figure 62 SFTP client interface ...