HP 6125G HP 6125G & 6125G/XG Blade Switches Security Configuration Gui - Page 253
Configuring ARP restricted forwarding, Displaying and maintaining ARP detection, Command, Remarks
View all HP 6125G manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 253 highlights
Step 1. Enter system view. Command system-view Remarks N/A 2. Enter VLAN view. 3. Enable ARP detection for the VLAN. vlan vlan-id arp detection enable N/A Disabled by default. 4. Return to system view. quit N/A 5. Enable ARP packet validity check and specify the objects to be checked. arp detection validate { dst-mac | ip | src-mac } * Disabled by default. 6. Enter Layer 2 Ethernet port/Layer 2 aggregate interface view. interface interface-type interface-number N/A 7. Configure the port as a trusted port on which ARP detection does not apply. arp detection trust Optional. The port is an untrusted port by default. Configuring ARP restricted forwarding ARP restricted forwarding controls the forwarding of ARP packets that are received on untrusted ports and have passed ARP detection in the following cases: • If the packets are ARP requests, they are forwarded through the trusted ports. • If the packets are ARP responses, they are forwarded according to their destination MAC address. If no match is found in the MAC address table, they are forwarded through the trusted ports. Before performing the following configuration, make sure you have configured the arp detection enable command. To enable ARP restricted forwarding: Step 1. Enter system view. 2. Enter VLAN view. 3. Enable ARP restricted forwarding. Command system-view vlan vlan-id arp restricted-forwarding enable Remarks N/A N/A Disabled by default Displaying and maintaining ARP detection Task Display the VLANs enabled with ARP detection. Display the ARP detection statistics. Clear the ARP detection statistics. Command display arp detection [ | { begin | exclude | include } regular-expression ] display arp detection statistics [ interface interface-type interface-number ] [ | { begin | exclude | include } regular-expression ] reset arp detection statistics [ interface interface-type interface-number ] Remarks Available in any view Available in any view Available in user view 243