Ip source guard commands, Ip source guard commands -264, Table 4-75 ip source guard commands -264 – SMC Networks SMC Tiger 10/100 SMC6128L2 User Manual

Page 564

Advertising
background image

C

OMMAND

L

INE

I

NTERFACE

4-264

Example

Related Commands

interface (4 -144)

IP Source Guard Commands

IP Source Guard is a security feature that filters IP traffic on network
interfaces based on manually configured entries in the IP Source Guard
table, or static and dynamic entries in the DHCP Snooping table when
enabled (see “DHCP Snooping Commands” on page 4-269). IP source
guard can be used to prevent traffic attacks caused when a host tries to
use the IP address of a neighbor to access the network. This section
describes commands used to configure IP Source Guard.

Console#ping 10.1.0.9
Type ESC to abort.
PING to 10.1.0.9, by 5 32-byte payload ICMP packets, timeout is 5
seconds
response time: 10 ms
response time: 10 ms
response time: 10 ms
response time: 10 ms
response time: 0 ms
Ping statistics for 10.1.0.9:
5 packets transmitted, 5 packets received (100%), 0 packets lost (0%)
Approximate round trip times:
Minimum = 0 ms, Maximum = 10 ms, Average = 8 ms
Console#

Table 4-75 IP Source Guard Commands

Command

Function

Mode Page

ip source-guard

Configures the switch to filter inbound
traffic based on source IP address, or source
IP address and corresponding MAC address

IC

4-265

ip source-guard
binding

Adds a static address to the source-guard
binding table

GC

4-267

show ip
source-guard

Shows whether source guard is enabled or
disabled on each interface

PE

4-268

show ip
source-guard
binding

Shows the source guard binding table

PE

4-269

Advertising