414
Enabling ARP detection logging
The ARP detection logging feature enables a device to generate ARP detection log messages when
illegal ARP packets are detected. An ARP detection log message contains the following information:
•
Receiving interface of the ARP packets.
•
Sender IP address.
•
Total number of dropped ARP packets.
To enable ARP detection logging:
Step Command Remarks
1.
Enter system view.
system-view
N/A
2.
Enable ARP detection
logging.
arp detection log enable
By default, ARP detection logging
is disabled.
Displaying and maintaining ARP detection
Execute
display
commands in any view and
reset
commands in user view.
Task Command
Display the VLANs enabled with
ARP detection.
display arp detection
Display the ARP detection
statistics.
display arp detection statistics
[
interface
interface-type
interface-number
]
Clear the ARP detection statistics.
reset arp detection statistics
[
interface interface-type
interface-number
]
User validity check and ARP packet validity check
configuration example
Network requirements
As shown in
, configure DHCP snooping on Switch B, and enable ARP detection in VLAN
10. Switch B performs ARP packet validity check and user validity check based on static IP source
guard bindings and DHCP snooping entries for connected hosts.