184 MES3000 Ethernet switch series
console(config-if)#
Table 5.218 —Ethernet interface configuration mode commands, interface group
Function is disabled by
default.
Enable client IP address protection for the configured interface.
Disable client IP address protection for the configured interface.
Privileged EXEC mode commands
Command line request in Privileged EXEC mode appears as follows:
console#
Table 5.219 —Privileged EXEC mode commands
ip source-guard tcam locate
Manually start the access to internal resources for storing the
inactive secured IP addresses into the memory. This command is
available to privileged users only.
EXEC mode commands
Command line request in EXEC mode appears as follows:
console#
Table 5.220 —EXEC mode commands
show ip source-guard
configuration
[gigabitethernet gi_port |
tengigabitethernet te_port
| port-channel group]
gi_port: (1..8/0/1..24);
te_port: (1..8/0/1..4);
group: (1..24)
Command shows IP address protection function configuration for
the selected (or all) device interfaces.
show ip source-guard status
[mac-address mac_address]
[ip-address ip_address ]
[vlan vlan_id]
[gigabitethernet gi_port |
tengigabitethernet te_port
| port-channel group]
gi_port: (1..8/0/1..24);
te_port: (1..8/0/1..4);
vlan_id: (1..4094);
group: (1..24)
Command shows the status of IP address protection function, IP
address, MAC address, and VLAN group.
show ip source-guard
inactive
Command shows inactive sender IP addresses.
Example execution of commands
Show IP address protection function configuration for all interfaces.
console# show ip source-guard configuration
IP source guard is globally enabled.
Interface State
--------- ------
gi0/4 Enabled
gi0/21 Enabled
gi0/22 Enabled