EasyManua.ls Logo

Ruijie RG-WLAN Series - Page 863

Ruijie RG-WLAN Series
1243 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Configuration Guide Configuring IP Source Guard
Description
Command
Interface configuration mode/WLAN security configuration mode
Usage Guide
Detection of users based on IP address or both IP and MAC addresses can be realized by enabling IP
Source Guard for a port.
Configuring a Static Binding
Command
ip source binding mac-address vlan vlan-id ip-address {interface interface-id |wlan wlan-id | ip-mac |
ip-only}
Parameter
Description
mac-address: The MAC address of a static binding
Vlan-id: The VLAN ID of a static binding
ip-address: The IP address of a static binding
interface-id: The Port ID (PID) of a static binding
wlan-id: WLAN ID of a static binding
ip-mac: IP-MAC based mode
ip-only: IP-based mode
Configuration
Mode
Global configuration mode
Usage Guide
Through this command, legitimate users can pass IP Source Guard detection instead of being controlled by
DHCP.
Specifying an Exception VLAN for IP Source Guard
Command
ip verify source exclude-vlan vlan-id
Parameter
Description
vlan-id: A VLAN ID exempted from IP Source Guard on a port
Command
Interface configuration mode/WLAN security configuration mode
Usage Guide
By using this command, the specified VLANs under a port where IP Source Guard function is enabled can
be exempted from check and filtering.
Configuration Example
Enabling IP Source Guard on Port 1
Configuration
Steps
Enable DHCP Snooping.
Enable IP Source Guard.
Ruijie(config)# interface GigabitEthernet 0/1
Ruijie(config-if-GigabitEthernet 0/1)# ip verify source
Ruijie(config-if-GigabitEthernet 0/1)# end
Ruijie(config)# wlansec 1
Ruijie(config-wlansec)# ip verify source port-security
Ruijie(config-wlansec)# end

Table of Contents

Other manuals for Ruijie RG-WLAN Series

Related product manuals