EasyManua.ls Logo

HP ProCurve 3500yl - Dynamic IP Lockdown

HP ProCurve 3500yl
219 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
129
Enhancements
Release K.13.19 Enhancements
show port-access web-based config
Figure 33. Example of show port-access Web-based config Command Output
Enhancement (PR_1000460265) — This enhancement provides Dynamic IP Lockdown,
which is used to prevent IP source address spoofing on a per-port and per-VLAN basis.
Dynamic IP Lockdown
The Dynamic IP Lockdown feature is used to prevent IP source address spoofing on a per-port and
per-VLAN basis. When dynamic IP lockdown is enabled, IP packets in VLAN traffic received on a port
are forwarded only if they contain a known source IP address and MAC address binding for the port.
The IP-to-MAC address binding can either be statically configured or learned by the DHCP Snooping
feature.
Syntax: show port-access web-based config [<port-list>]
Displays the currently configured Web Authentication settings for all ports or
specified ports, including web-specific settings for password retries, SSL login
status, and a redirect URL, if specified.
ProCurve Switch (config)# show port-access web-based 47 config
Port Access Web-Based Configuration
DHCP Base Address : 192.168.0.0
DHCP Subnet Mask : 255.255.255.0
DHCP Lease Length : 10
Allow RADIUS-assigned dynamic (GVRP) VLANs [No] : No
EWA_Server Address | EWA-Server Page Path
------------------ + --------------------
10.0.12.179 | /EWA
10.0.12.180 | /EWA
Client Client Logoff Re-Auth Unauth Auth Cntrl
Port Enabled Limit Moves Period Period VLAN ID VLAN ID Dir
----- -------- ------ ------ --------- --------- -------- -------- -----
47 Yes 1 No 300 0 1 0 both
ProCurve Switch (config)#

Table of Contents

Related product manuals