![WAGO 852-1305 Скачать руководство пользователя страница 95](http://html1.mh-extra.com/html/wago/852-1305/852-1305_manual_3162444095.webp)
WAGO-ETHERNET-Zubehör 852
Enhanced Features
95
852-1305 8/4-Port 100BASE-T/1000BASE-SX/LX
Manual
1.1.0
7.3
Security
7.3.1
IP Source Guard
“IP Source Guard” is a security function that restricts IP traffic on untrusted
Layer2 ports by filtering traffic based on a “DHCP Snooping” database
connection or a manually configured IP source connection. This function helps
prevent access such as “IP Snooping” (sending IP packets with a spoofed sender
IP address) if a host attempts to spoof the IP address of another host. Any IP
traffic coming into the interface with a source IP address other than that assigned
(via DHCP or static configuration) is filtered out on untrusted Layer2 ports.
This function is used on untrusted Layer2 interfaces in combination with “DHCP
Snooping”. An IP source binding table is manually configured (static IP source
binding) or created from information from the “DHCP Snooping” function and
used. Each entry in this table contains the IP address and associated MAC and
VLAN addresses. The “IP Source Guard” only supports Layer2 ports, including
“Access Ports” and “Trunk Ports”.
The “IP Source Guard” includes the following functions:
1.
DHCP Snooping
2.
DHCP Binding Table
3.
ARP Inspection
4.
Blacklist Filter (ARP inspection with MAC address filter table)