D-Link DXS-3400 User Manual - Page 358
BPDU Attack Protection, Security >ARP Spoofing Prevention, From Port ~ To Port, Gateway IP, Apply
View all D-Link DXS-3400 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 358 highlights
DXS-3400 Series Lite Layer 3 Stackable 10GbE Managed Switch Web UI Reference Guide If an ARP address matches a configured gateway's IP address, MAC address, and port list, then bypass the Dynamic ARP Inspection (DAI) check no matter if the receiving port is ARP trusted or untrusted. To view the following window, click Security >ARP Spoofing Prevention, as shown below: Figure 9-66ARP Spoofing Prevention Window The fields that can be configured are described below: Parameter Unit From Port ~ To Port Gateway IP Gateway MAC Description Select the Switch unit that will be used for this configuration here. Select the appropriate port range used for the configuration here. Enter the gateway's IP address used here. Enter the gateway's MAC address used here. Click the Apply button to accept the changes made. Click the Delete button to remove the specified entry. BPDU Attack Protection This window is used to display and configure the BPDU attack protection settings. In generally, there are two states in the BPDU attack protection function. One is normal state, and another is under attack state. The under attack state has three modes: drop, block, and shutdown. A BPDU protection enabled port will enter an under attack state when it receives one STP BPDU packet and it will take action based on the configuration. Thus, BPDU protection can only be enabled on the STP-disabled port. BPDU protection has a higher priority than the (Forward BPDU) FBPDU setting configured by configure STP command in the determination of BPDU handling. That is, when FBPDU is configured to forward STP BPDU but BPDU protection is enabled, then the port will not forward STP BPDU. BPDU protection also has a higher priority than the BPDU tunnel port setting in determination of BPDU handling. That is, when a port is configured as BPDU tunnel port for STP, it will forward STP BPDU. But if the port is BPDU protection enabled. Then the port will not forward STP BPDU. To view the following window, click Security >BPDU Attack Protection, as shown below: 348