D-Link DMS-3130 User Manual - Page 366

ARP Inspection Port Settings

Page 366 highlights

DMS-3130 Series Multi-Gigabit L3 Stackable Managed Switch Web UI Reference Guide Parameter Src-MAC Dst-MAC IP Description Select to enable or disable the source MAC option here. This option specifies to check for ARP requests and response packets and the consistency of the source MAC address in the Ethernet header against the sender MAC address in the ARP payload. Select to enable or disable the destination MAC option here. This option specifies to check for ARP response packets and the consistency of the destination MAC address in the Ethernet header against the target MAC address in the ARP payload. Select to enable or disable the IP option here. This option specifies to check the ARP body for invalid and unexpected IP addresses. It also specifies to check the validity of IP address in the ARP payload. The sender IP in both the ARP request and response and target IP in the ARP response are validated. Packets destined for the IP addresses 0.0.0.0, 255.255.255.255, and all IP multicast addresses are dropped. Sender IP addresses are checked in all ARP requests and responses, and target IP addresses are checked only in ARP responses. Click the Apply button to accept the changes made. The fields that can be configured in ARP Inspection VLAN Logging are described below: Parameter ACL Logging DHCP Logging Description After clicking Edit, select a logging option for ACL logging: Deny, Permit, All and None. Select Deny to log denied ARP requests. Select Permit to log permitted requests. Select All to log all request. Select None to disable logging. After clicking Edit, select a logging option for DHCP logging: Deny, Permit, All and None. Select Deny to log denied ARP requests. Select Permit to log permitted requests. Select All to log all request. Select None to disable logging. The fields that can be configured in ARP Inspection Filter are described below: Parameter ARP Access List Name VID List Static ACL Description Enter the ARP access list name used here. This name can be up to 32 characters long. Enter the VLAN ID list used here. Select whether to use a static ACL or not here by either selecting Yes or No. Click the Add button to add a new entry based on the information entered. Click the Delete button to remove an entry based on the information entered. Enter a page number and click the Go button to navigate to a specific page when multiple pages exist. ARP Inspection Port Settings This window is used to display and configure the ARP inspection port settings. To view the following window, click Security > IMPB > IPv4 > Dynamic ARP Inspection > ARP Inspection Port Settings, as shown below: 355

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414
  • 415
  • 416
  • 417
  • 418
  • 419
  • 420
  • 421
  • 422
  • 423
  • 424
  • 425
  • 426
  • 427
  • 428
  • 429
  • 430
  • 431
  • 432
  • 433
  • 434
  • 435
  • 436
  • 437
  • 438
  • 439
  • 440
  • 441
  • 442
  • 443
  • 444
  • 445
  • 446
  • 447
  • 448
  • 449
  • 450
  • 451
  • 452
  • 453
  • 454
  • 455
  • 456
  • 457
  • 458
  • 459
  • 460
  • 461
  • 462
  • 463
  • 464
  • 465
  • 466
  • 467
  • 468
  • 469
  • 470
  • 471
  • 472
  • 473
  • 474
  • 475
  • 476
  • 477
  • 478
  • 479
  • 480
  • 481
  • 482
  • 483
  • 484
  • 485
  • 486
  • 487
  • 488
  • 489
  • 490
  • 491
  • 492
  • 493
  • 494
  • 495
  • 496
  • 497
  • 498
  • 499
  • 500
  • 501
  • 502
  • 503
  • 504
  • 505
  • 506
  • 507
  • 508
  • 509
  • 510
  • 511
  • 512
  • 513
  • 514
  • 515
  • 516
  • 517
  • 518
  • 519
  • 520
  • 521
  • 522
  • 523

DMS-3130 Series Multi-Gigabit L3 Stackable Managed Switch Web UI Reference Guide
355
Parameter
Description
Src-MAC
Select to enable or disable the source MAC option here. This option specifies to
check for ARP requests and response packets and the consistency of the
source MAC address in the Ethernet header against the sender MAC address
in the ARP payload.
Dst-MAC
Select to enable or disable the destination MAC option here. This option
specifies to check for ARP response packets and the consistency of the
destination MAC address in the Ethernet header against the target MAC
address in the ARP payload.
IP
Select to enable or disable the IP option here. This option specifies to check the
ARP body for invalid and unexpected IP addresses. It also specifies to check
the validity of IP address in the ARP payload. The sender IP in both the ARP
request and response and target IP in the ARP response are validated. Packets
destined for the IP addresses 0.0.0.0, 255.255.255.255, and all IP multicast
addresses are dropped. Sender IP addresses are checked in all ARP requests
and responses, and target IP addresses are checked only in ARP responses.
Click the
Apply
button to accept the changes made.
The fields that can be configured in
ARP Inspection VLAN Logging
are described below:
Parameter
Description
ACL Logging
After clicking Edit, select a logging option for ACL logging:
Deny, Permit, All
and
None
. Select Deny to log denied ARP requests. Select Permit to log
permitted requests. Select All to log all request. Select None to disable logging.
DHCP Logging
After clicking Edit, select a logging option for DHCP logging:
Deny, Permit, All
and
None
. Select Deny to log denied ARP requests. Select Permit to log
permitted requests. Select All to log all request. Select None to disable logging.
The fields that can be configured in
ARP Inspection Filter
are described below:
Parameter
Description
ARP Access List Name
Enter the ARP access list name used here. This name can be up to 32
characters long.
VID List
Enter the VLAN ID list used here.
Static ACL
Select whether to use a static ACL or not here by either selecting
Yes
or
No
.
Click the
Add
button to add a new entry based on the information entered.
Click the
Delete
button to remove an entry based on the information entered.
Enter a page number and click the
Go
button to navigate to a specific page when multiple pages exist.
ARP Inspection Port Settings
This window is used to display and configure the ARP inspection port settings.
To view the following window, click
Security > IMPB > IPv4 > Dynamic ARP Inspection > ARP Inspection Port
Settings
, as shown below: