Chapter 24: General Security Measures
ARP Inspection
– 881 –
ip arp inspection
limit
This command sets a rate limit for the ARP packets received on a port. Use
the
no
form to restore the default setting.
S
YNTAX
ip arp inspection limit
{
rate
pps
|
none
}
no ip arp inspection limit
pps
- The maximum number of ARP packets that can be processed
by the CPU per second on trusted or untrusted ports.
(Range: 0-2048, where 0 means that no ARP packets can be
forwarded)
none
- There is no limit on the number of ARP packets that can be
processed by the CPU.
D
EFAULT
S
ETTING
15
C
OMMAND
M
ODE
Interface Configuration (Port, Static Aggregation)
C
OMMAND
U
SAGE
•
This command applies to both trusted and untrusted ports.
•
When the rate of incoming ARP packets exceeds the configured limit,
the switch drops all ARP packets in excess of the limit.
E
XAMPLE
Console(config)#interface ethernet 1/1
Console(config-if)#ip arp inspection limit rate 150
Console(config-if)#
ip arp inspection
trust
This command sets a port as trusted, and thus exempted from ARP
Inspection. Use the
no
form to restore the default setting.
S
YNTAX
[
no
]
ip arp inspection trust
D
EFAULT
S
ETTING
Untrusted
C
OMMAND
M
ODE
Interface Configuration (Port, Static Aggregation)
C
OMMAND
U
SAGE
Packets arriving on untrusted ports are subject to any configured ARP
Inspection and additional validation checks. Packets arriving on trusted
ports bypass all of these checks, and are forwarded according to normal
switching rules.
Содержание SSE-G2252
Страница 42: ...44 General IP Routing on page 627...
Страница 174: ...Chapter 6 VLAN Configuration Configuring VLAN Mirroring 178 Figure 6 27 Showing the VLANs to Mirror...
Страница 511: ...Chapter 14 Basic Administration Protocols UDLD Configuration 518 Figure 14 100 Displaying UDLD Neighbor Information...
Страница 603: ...Chapter 16 IP Configuration Setting the Switch s IP Address IP Version 6 609...
Страница 883: ...Chapter 24 General Security Measures Port based Traffic Segmentation 894...
Страница 989: ...Chapter 30 Congestion Control Commands Automatic Traffic Control Commands 1000 Console...
Страница 1007: ...Chapter 33 Address Table Commands 1019...
Страница 1137: ...Chapter 38 Quality of Service Commands 1150...
Страница 1366: ...Chapter 46 IP Routing Commands Global Routing Configuration 1381 Connected 2 Total 2 FIB 0 Console...