3 ip arp inspection vlan logging, 4 ip arp inspection filter – Fortinet 548B User Manual

Page 357

Advertising
background image

- 357 -

no - This command disables Dynamic ARP Inspection on a list of comma-separated VLAN ranges.

Default Setting

Disabled

Command Mode

Global Config

7.20.2.3 ip arp inspection vlan logging

This command enables logging of invalid ARP packets on a list of comma-separated VLAN ranges.

Syntax

ip arp inspection vlan <vlan-list> logging
no ip arp inspection vlan <vlan-list> logging

no - This command disables logging of invalid ARP packets on a list of comma-separated VLAN
ranges.

Default Setting

Disabled

Command Mode

Global Config

7.20.2.4 ip arp inspection filter

This command configures the ARP ACL used to filter invalid ARP packets on a list of comma-separated
VLAN ranges. If the static keyword is given, packets that do not match a permit statement are dropped
without consulting the DHCP snooping bindings.

Syntax

ip arp inspection filter <acl-name> vlan <vlan-list> [static]
no ip arp inspection filter <acl-name> vlan <vlan-list> [static]

no - This command unconfigures the ARP ACL used to filter invalid ARP packets on a list of
comma-separated VLAN ranges.

Default Setting

No ARP ACL is configured on a VLAN

Advertising