Ip dhcp snooping verify mac-address, Ip dhcp snooping vlan – Brocade Communications Systems Brocate Ethernet Access Switch 6910 User Manual

Page 270

Advertising
background image

220

Brocade 6910 Ethernet Access Switch Configuration Guide

53-1002581-01

DHCP Snooping

10

Command Usage

When the switch receives DHCP packets from clients that already include DHCP Option 82
information, the switch can be configured to set the action policy for these packets. The switch can
either drop the DHCP packets, keep the existing information, or replace it with the switch’s relay
information.

Example

Console(config)#ip dhcp snooping information policy drop

Console(config)#

ip dhcp snooping verify mac-address

This command verifies the client’s hardware address stored in the DHCP packet against the source
MAC address in the Ethernet header. Use the no form to disable this function.

Syntax

[no] ip dhcp binding verify mac-address

Default Setting

Enabled

Command Mode

Global Configuration

Command Usage

If MAC address verification is enabled, and the source MAC address in the Ethernet header of the
packet is not same as the client’s hardware address in the DHCP packet, the packet is dropped.

Example

This example enables MAC address verification.

Console(config)#ip dhcp snooping verify mac-address

Console(config)#

Related Commands

ip dhcp snooping (216)
ip dhcp snooping vlan (220)
ip dhcp snooping trust (222)

ip dhcp snooping vlan

This command enables DHCP snooping on the specified VLAN. Use the no form to restore the
default setting.

Syntax

[no] ip dhcp snooping vlan vlan-id

vlan-id - ID of a configured VLAN (Range: 1-4093)

Advertising