Instruction Manual
59
Change the IP Source Guard settings
You can use the
IP Source Guard
table (manually insert MAC Address table) or
DHCP
Snooping
table (dynamic MAC address table) to filter IP traffic on switch ports.
To access the
IP Source Guard
screen, click
Configuration
>
Security
>
Network
>
IP
Source Guard
.
Menu option
Description
IP Source Guard mode
Mode
Enable or Disable the Global IP Source Guard. All configured ACEs
will be lost when Mode is set to Enabled.
Port mode configuration
Port mode
Specifies the ports on which IP Source Guard is enabled. Only
when both Global Mode and Port Mode are enabled on a given
port is IP Source Guard enabled on that port.
Max Dynamic
Specify the maximum number of dynamic clients that can be
learned on a given port. This value can be 0, 1, 2, or Unlimited. If
the port mode is enabled and the value of max dynamic client is
equal to 0, it means only the IP packets that are matched in static
entries on the specific port are forwarded.
1. On the main screen of the Web management UI, click
Configuration
>
Security
>
Network
>
IP Source Guard
>
Configuration
.
2. Set the
IP Source Guard
mode to either
Enabled
or
Disabled
.
3. Set the
IP Source Guard
mode for each port, as well as the
Max Dynamic Clients
allowed.
4. To save your settings, click
Save
.
To restore the previous settings, click
Reset
.