2-2
Description
Use the
arp detection enable
command to enable the ARP attack detection function on all ports in the
specified VLAN. When receiving an ARP packet from a port in this VLAN, the switch will check the
source IP address, source MAC address, number of the receiving port, and the VLAN of the port. If the
mapping of the source IP address and source MAC address is not included in the DHCP snooping
entries or IP static binding entries, or the number of the receiving port and the VLAN of the port do not
match the DHCP snooping entries or IP static binding entries, the ARP packet will be discarded.
Use the
undo arp detection enable
command to disable the ARP attack detection function on all ports
in the specified VLAN.
By default, ARP attack detection is disabled on the switch.
Examples
# Enable ARP attack detection on all ports in VLAN 1.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] vlan 1
[Sysname-vlan1] arp detection enable
arp detection trust
Syntax
arp detection trust
undo arp detection trust
View
Ethernet port view
Parameters
None
Description
Use the
arp detection trust
command to specify the current port as a trusted port, that is, ARP packets
received on this port are regarded as legal ARP packets and will not be checked.
Use the
undo arp detection trust
command to specify the current port as an untrusted port in ARP
detection.
By default, a port is an untrusted port in ARP detection.
Examples
# Specify Ethernet 1/0/11 as the trusted port in ARP detection.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] interface Ethernet 1/0/11
[Sysname-Ethernet1/0/11] arp detection trust
Summary of Contents for 5500-EI PWR
Page 43: ...2 6...
Page 76: ...1 17...
Page 228: ...ii stp transmit limit 1 44 vlan mapping modulo 1 45 vlan vpn tunnel 1 46...
Page 477: ...5 24 Sysname vlan 2 Sysname vlan2 service type multicast...
Page 503: ...2 3 System View return to User View with Ctrl Z Sysname dot1x url http 192 168 19 23...
Page 519: ...iii...
Page 597: ...2 2 security policy server 192 168 0 1 user name format without domain...
Page 648: ...1 9 Examples Clear static ARP entries Sysname reset arp static...
Page 663: ...4 3 Sysname resilient arp interface vlan interface 2...
Page 767: ...1 28 From 12 00 Jan 1 2008 to 12 00 Jun 1 2008...
Page 1111: ...ii xmodem get 3 18...
Page 1314: ...A 44 Z...