512
G8332 Command Reference for ENOS 8.4
Dynamic ARP Inspection Configuration
Dynamic
ARP
Inspection
(DAI)
is
a
security
feature
that
enables
the
device
to
intercept
and
examine
all
ARP
request
and
response
packets
in
a
subnet
and
discard
those
packets
with
invalid
IP
to
MAC
address
bindings.
DAI
uses
information
gathered
by
DHCP
Snooping
to
validate
ARP
information
that
travels
through
ports
marked
as
being
not
trusted.
Table 266.
Dynamic
ARP
Inspection
Configuration
Options
Command Syntax and Usage
[no]
ip
arp
inspection
vlan
<VLAN
ID
(1
‐
4094)>
Enables
or
disables
DAI
on
the
selected
VLANs.
Command
mode:
Global
configuration
[no]
ip
arp
inspection
trust
Configures
the
current
port
to
be
a
DAI
trusted
port.
On
a
DAI
trusted
port,
all
ARP
packets
skip
the
security
check.
The
default
settings
is
untrusted
.
Note:
Configuring
trusted
interfaces
as
being
untrusted
can
result
in
a
loss
of
connectivity.
Command
mode:
Interface
port
[no]
logging
log
arp
inspection
Enables
or
disables
logging
for
DAI.
The
default
setting
is
enabled
.
Command
mode:
Global
configuration
show
ip
arp
inspection
Displays
the
current
DAI
configuration
settings.
For
mode
details,
see
.
Command
mode:
All
Summary of Contents for RackSwitch G8332
Page 20: ...20 G8332 Command Reference for ENOS 8 4 ...
Page 32: ...32 G8332 Command Reference for ENOS 8 4 ...
Page 674: ...674 G8332 Command Reference for ENOS 8 4 ...
Page 708: ...708 G8332 Command Reference for ENOS 8 4 ...
Page 732: ...732 G8332 Command Reference for ENOS 8 4 ...
Page 750: ...750 G8332 Command Reference for ENOS 8 4 ...
Page 766: ...766 G8332 Command Reference for ENOS 8 4 Taiwan Class A compliance statement ...