Configuration Guide NFPP Configuration
%NFPP_DHCP_GUARD-4-ISOLATED:Host <IP= N/A,MAC=0000.0000.0001,port=Gi4/1,
VLAN=1> was isolated. (2009-07-01 13:00:00)
The following example shows the describing information included in the sent
TRAP messages:
Host<IP=N/A,MAC=0000.0000.0001,port=Gi4/1,VLAN=1> was isolated.
When it fails to isolate the hardware due to a lack of memory or hardware
resources, it prompts:
%NFPP_DHCP_GUARD-4-ISOLATE_FAILED: Failed to isolate host <IP=N/A,MAC=000
0.0000.0001,port=Gi4/1,VLAN=1>. (2009-07-01 13:00:00)
The following example shows the describing information included in the sent
TRAP messages:
Failed to isolate host<IP=N/A,MAC=0000.0000.0001,port=Gi4/1,VLAN=1>.
When it fails to allocate the memory to the detected attackers, it
prompts the message like “%NFPP_DHCP_GUARD-4-NO_MEMORY:
Failed to alloc memory.”to inform the administrator.
This section shows the administrator how to configure the host-based rate-limit
and attack detection in the nfpp configuration mode and in the interface
configuration mode:
Configure the dhcp-guard rate-limit, ranging
from 1 to 9999, 5 by default.
per-src-mac: detect the hosts based on the
source MAC address/VID/port;