C
HAPTER
4
| Configuring the Switch
Configuring Security
– 102 –
PARAMETERS
These parameters are displayed:
â—† Relay Mode - Enables or disables the DHCP relay function.
(Default: Disabled)
â—† Relay Server - IP address of DHCP server to be used by the switch's
DHCP relay agent.
â—† Relay Information Mode - Enables or disables the DHCP Relay Option
82 support. Note that Relay Mode must also be enabled for Relay
Information Mode to take effect. (Default: Disabled)
â—† Relay Information Policy - Sets the DHCP relay policy for DHCP
client packets that include Option 82 information.
â–
Replace - Overwrites the DHCP client packet information with the
switch's relay information. (This is the default.)
â–
Keep - Retains the client's DHCP information.
â–
Drop - Drops the packet when it receives a DHCP message that
already contains relay information.
WEB INTERFACE
To configure DHCP Relay:
1. Click Configuration, Security, Network, DHCP, Relay.
2. Enable the DHCP relay function, specify the DHCP server’s IP address,
enable Option 82 information mode, and set the policy by which to
handle relay information found in client packets.
3. Click Save.
Figure 33: DHCP Relay Configuration
CONFIGURING IP
SOURCE GUARD
IP Source Guard is a security feature that filters IP traffic on network
interfaces based on manually configured entries in the IP Source Guard
table, or dynamic entries in the DHCP Snooping table when enabled (see
"Configuring DHCP Snooping"). IP source guard can be used to prevent
traffic attacks caused when a host tries to use the IP address of a neighbor
to access the network.