ZyXEL VES1724-56B2 User Guide - Page 261

ARP Inspection Status

Page 261 highlights

Chapter 26 IP Source Guard The following table describes the labels in this screen. Table 115 DHCP Snooping VLAN Configure LABEL Show VLAN Start VID End VID Apply VID Enabled Option82 SPV Delimiter Information Remote ID Apply Cancel DESCRIPTION Use this section to specify the VLANs you want to manage in the section below. Enter the lowest VLAN ID you want to manage in the section below. Enter the highest VLAN ID you want to manage in the section below. Click this to display the specified range of VLANs in the section below. This field displays the VLAN ID of each VLAN in the range specified above. If you configure the * VLAN, the settings are applied to all VLANs. Select Yes to enable DHCP snooping on the VLAN. You still have to enable DHCP snooping on the Switch and specify trusted ports. If DHCP is enabled and there are no trusted ports, DHCP requests will not succeed. Select this to have the Switch add the slot number, port number and VLAN ID to DHCP requests that it broadcasts to the DHCP VLAN, if specified, or VLAN. You can specify the DHCP VLAN in the DHCP Snooping Configure screen. See Section 26.5 on page 257. Select the variables that you want the Switch to generate and add in the DHCP requests. The variable options include SP, SV, PV and SPV which indicate combinations of slot-port, slotVLAN, port-VLAN and slot-port-VLAN respectively in ASCII code. Alternatively, select private to have the Switch use the DHCP relay option 82 old format (slot-port-VLAN) in binary. The Switch uses a zero for the slot value in the DHCP requests. An example of the port number is 1 if you select private while it is 31 in ASCII code if you select SP, SV or SPV. Select a delimiter to separate the option 82 information, slot ID, port number and/or VLAN ID from each other. You can use a pound key (#), semi-colon (;), period (.), comma (,), forward slash (/) or space. Select none to not use any delimiter. Select this to have the Switch add the system name to DHCP requests that it broadcasts to the DHCP VLAN, if specified, or VLAN. You can configure the system name in the General Setup screen. See Chapter 8 on page 70. You can specify the DHCP VLAN in the DHCP Snooping Configure screen. See Section 26.5 on page 257. Select this to have the Switch also add the receiving port name as the remote ID to DHCP requests. Clear this to not add remote IDs to DHCP requests. Click Apply to save your changes to the Switch's run-time memory. The Switch loses these changes if it is turned off or loses power, so use the Save link on the top navigation panel to save your changes to the non-volatile memory when you are done configuring. Click this to reset the values in this screen to their last-saved values. 26.6 ARP Inspection Status Use this screen to look at the current list of MAC address filters that were created because the Switch identified an unauthorized ARP packet. When the Switch identifies an unauthorized ARP packet, it automatically creates a MAC address filter to block traffic from the source MAC address VES1724-56 User's Guide 261

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414

Chapter 26 IP Source Guard
VES1724-56 User’s Guide
261
The following table describes the labels in this screen.
26.6
ARP Inspection Status
Use this screen to look at the current list of MAC address filters that were created because the
Switch identified an unauthorized ARP packet. When the Switch identifies an unauthorized ARP
packet, it automatically creates a MAC address filter to block traffic from the source MAC address
Table 115
DHCP Snooping VLAN Configure
LABEL
DESCRIPTION
Show VLAN
Use this section to specify the VLANs you want to manage in the section below.
Start VID
Enter the lowest VLAN ID you want to manage in the section below.
End VID
Enter the highest VLAN ID you want to manage in the section below.
Apply
Click this to display the specified range of VLANs in the section below.
VID
This field displays the VLAN ID of each VLAN in the range specified above. If you configure the
*
VLAN, the settings are applied to all VLANs.
Enabled
Select
Yes
to enable DHCP snooping on the VLAN. You still have to enable DHCP snooping on
the Switch and specify trusted ports.
If DHCP is enabled and there are no trusted ports, DHCP requests will not succeed.
Option82
Select this to have the Switch add the slot number, port number and VLAN ID to DHCP requests
that it broadcasts to the DHCP VLAN, if specified, or VLAN. You can specify the DHCP VLAN in
the
DHCP Snooping Configure
screen. See
Section 26.5 on page 257
.
SPV
Select the variables that you want the Switch to generate and add in the DHCP requests. The
variable options include
SP
,
SV
,
PV
and
SPV
which indicate combinations of slot-port, slot-
VLAN, port-VLAN and slot-port-VLAN respectively in ASCII code. Alternatively, select
private
to have the Switch use the DHCP relay option 82 old format (slot-port-VLAN) in binary. The
Switch uses a zero for the slot value in the DHCP requests. An example of the port number is 1
if you select
private
while it is 31 in ASCII code if you select
SP
,
SV
or
SPV
.
Delimiter
Select a delimiter to separate the option 82 information, slot ID, port number and/or VLAN ID
from each other. You can use a pound key (
#
), semi-colon (
;
), period (
.
), comma (
,
), forward
slash (
/
) or
space
. Select
none
to not use any delimiter.
Information
Select this to have the Switch add the system name to DHCP requests that it broadcasts to the
DHCP VLAN, if specified, or VLAN. You can configure the system name in the
General Setup
screen. See
Chapter 8 on page 70
. You can specify the DHCP VLAN in the
DHCP Snooping
Configure
screen. See
Section 26.5 on page 257
.
Remote ID
Select this to have the Switch also add the receiving port name as the remote ID to DHCP
requests. Clear this to not add remote IDs to DHCP requests.
Apply
Click
Apply
to save your changes to the Switch’s run-time memory. The Switch loses these
changes if it is turned off or loses power, so use the
Save
link on the top navigation panel to
save your changes to the non-volatile memory when you are done configuring.
Cancel
Click this to reset the values in this screen to their last-saved values.