D-Link DMS-3130 User Manual - Page 384
ARP Spoofing Prevention, BPDU Attack Protection
View all D-Link DMS-3130 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 384 highlights
DMS-3130 Series Multi-Gigabit L3 Stackable Managed Switch Web UI Reference Guide Parameter Profile Name Description Enter the DHCP server screening profile that will be used for the port(s) specified here. Click the Apply button to accept the changes made. Click the Delete button to remove the specified entry. ARP Spoofing Prevention This window is used to display and configure the ARP spoofing prevention settings. When an entry is created, ARP packets whose sender IP address matches the gateway IP address, of an entry, but its sender MAC address field does not match the gateway MAC address, of the entry, will be dropped by the system. The ASP will bypass the ARP packets whose sender IP address doesn't match the configured gateway IP address. If an ARP address matches a configured gateway's IP address, MAC address, and port list, then bypass the Dynamic ARP Inspection (DAI) check no matter if the receiving port is ARP trusted or untrusted. To view the following window, click Security > ARP Spoofing Prevention, as shown below: Figure 9-70 ARP Spoofing Prevention Window The fields that can be configured are described below: Parameter Unit From Port - To Port Gateway IP Gateway MAC Description Select the Switch unit that will be used for this configuration here. This option is only available if stacking is enabled. Select the appropriate port range used for the configuration here. Enter the gateway IP address used here. Enter the gateway MAC address used here. Click the Apply button to accept the changes made. Click the Delete button to remove the specified entry. BPDU Attack Protection This window is used to display and configure the BPDU attack protection settings. In generally, there are two states in the BPDU attack protection function. One is normal state, and another is under attack state. The under attack state has three modes: drop, block, and shutdown. A BPDU protection enabled port will enter an under attack state when it receives one STP BPDU packet and it will take action based on the configuration. 373