A10E/A28E/A28F Configuration Guide
6.3.2 Preparing for configurations
Scenario
Dynamic ARP inspection is used to prevent the common ARP spoofing attacks in the network,
which isolates the ARP packets with unsafe sources. Trust status of an interface depends on
whether trust ARP packets. However, the binding table decides whether the ARP packets meet
requirement.
Prerequisite
Enable DHCP Snooping if there is a DHCP user.
6.3.3 Default configurations of dynamic ARP inspection
The default configuration of dynamic ARP inspection is as below.
Dynamic ARP inspection interface trust status
Dynamic ARP inspection static binding
Binding status of dynamic ARP inspection and dynamic DHCP
Snooping
Binding status of dynamic ARP inspection and dynamic DHCP Relay
Dynamic ARP inspection static binding table
Dynamic ARP inspection protection VLAN
Interface ARP packets rate limiting
Interface ARP packets rate limiting
ARP packets rate limiting recovery
ARP packets rate limiting recovery time
6.3.4 Configuring trusted interfaces of dynamic ARP inspection
Configure trusted interfaces of dynamic ARP inspection for the A10E/A28E as below.
Enter global configuration mode.
Alpha-A28E(config)#interface
port
port-id
Enter physical layer interface
configuration mode.
Alpha-A28E(config-port)#ip
arp-inspection trust
Set the interface to a trusted interface.