Chapter 11 - DHCP
This chapter describes how to configure and display the DHCP Snooping parameters of
the switch.
11-1 Snooping
11-1.1 Configuration
DHCP Snooping is used to block intruder on the untrusted ports of the switch
device when it tries to intervene by injecting a bogus DHCP reply packet to a
legitimate conversation between the DHCP client and server.
The section describes how to configure the DHCP Snooping parameters of the switch.
DHCP Snooping can prevent attackers from adding their own DHCP servers to the network.
Web Interface
To configure DHCP snooping in the web interface:
1. Click DHCP, Snooping, and Configuration.
2. Select “Enabled” in the Mode of DHCP Snooping Configuration.
3. Select “Trusted” of the specific port in the Mode of Port Mode Configuration.
4. Click Apply.
Figure 11-1.1: DHCP Snooping Configuration
Parameter descriptions:
Snooping Mode : Indicates the DHCP snooping mode operation. Possible modes are:
Enabled: Enable DHCP snooping mode operation. When DHCP snooping mode operation is
enabled, the DHCP request messages will be forwarded to trusted ports and only allow reply
packets from trusted ports.
Disabled: Disable DHCP snooping mode operation.
Port Mode Configuration: Indicates the DHCP snooping port mode. Possible port modes are:
Trusted: Configures the port as trusted source of the DHCP messages.
Untrusted: Configures the port as untrusted source of the DHCP messages.