Defining Dynamic Arp Inspection Interfaces Settings; Defining Arp Inspection Access Control - Cisco 500 Series Administration Manual

Stackable managed
Hide thumbs Also See for 500 Series:
Table of Contents

Advertisement

Security
ARP Inspection
STEP 2
STEP 1
STEP 2
STEP 3
STEP 1
STEP 2
STEP 3
Cisco 500 Series Stackable Managed Switch Administration Guide
-
Never—Disabled SYSLOG dropped packet messages.
Click Apply. The settings are defined, and the Running Configuration file is
updated.

Defining Dynamic ARP Inspection Interfaces Settings

Packets from untrusted ports/LAGs are checked against the ARP Access Rules
table and the DHCP Snooping Binding database if DHCP Snooping is enabled (see
the DHCP Snooping Binding Database page).
By default, ports/LAGs are ARP Inspection untrusted.
To change the ARP trusted status of a port/LAG:
Click Security > ARP Inspection > Interface Settings.
The ports/LAGs and their ARP trusted/untrusted status are displayed.
To set a port/LAG as untrusted, select the port/LAG and click Edit.
Select Trusted or Untrusted and click Apply to save the settings to the Running
Configuration file.

Defining ARP Inspection Access Control

To add entries to the ARP Inspection table:
Click Security > ARP Inspection > ARP Access Control.
To add an entry, click Add.
Enter the fields:
ARP Access Control Name—Enter a user-created name.
IP Address—IP address of packet.
MAC Address—MAC address of packet.
21
478

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents