EasyManua.ls Logo

Enterasys SecureStack C2 C2G170-24 - Set Dhcpsnooping Log-Invalid

Enterasys SecureStack C2 C2G170-24
698 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
set dhcpsnooping log-invalid
17-8 DHCP Snooping and Dynamic ARP Inspection
Parameters
Defaults
SourceMACaddressverificationisenabledbydefault.
Mode
Switchcommand,readwrite.
Usage
Whenthisverificationisenabled,theDHCPsnoopingapplicationcomparesthesourceMAC
addresscontainedinvalidclientmessageswiththeclient’shardwareaddress.Ifthereisa
mismatch,DHCPsnoopinglogstheeventanddropsthepacket.
Usetheshow dhcpsnoopingcommandtodisplaythestatus(enabledordisabled)of
sourceMAC
addressverificationforeachinterfaceinanenabledVLAN.Theshow dhcpsnoopingstatistics
commandshowstheactualnumberofMACverificationerrorsthatoccurredonuntrustedports.
Example
ThisexampledisablessourceMACaddressverificationandlogging.
C2
(rw)->set dhcpsnooping verify mac-address disable
set dhcpsnooping log-invalid
UsethiscommandtoenableordisableloggingofinvalidDHCPmessagesonports.
Syntax
set dhcpsnooping log-invalid port port-string {enable | disable}
Parameters
Defaults
Disabled.
Mode
Switchcommand,readwrite.
Usage
TheDHCPsnoopingapplicationprocessesincomingDHCPmessages.ForDHCPRELEASEand
DHCPDECLINEmessages,theapplicationcomparesthereceiveinterface andVLANwiththe
enable EnablesverificationofthesourceMACaddressinclientmessages
againsttheclienthardwareaddress.
disable DisablesverificationofthesourceMACaddressinclientmessages
againstthe
clienthardwareaddress.
portportstring Specifiestheportorports onwhichtoenableordisableloggingof
invalidpackets.
enable|disable Enablesordisablesloggingonthespecifiedports.

Table of Contents

Other manuals for Enterasys SecureStack C2 C2G170-24

Related product manuals