Show ip source-guard – PLANET SGSD-1022 User Manual

Page 500

Advertising
background image

User’s Manual of SGSD-1022 / SGSD-1022P

SGSW-2840 / SGSW-2840P

Command Mode

Global Configuration

Command Usage

• Table entries include a MAC address, IP address, lease time, entry type (Static-IP-SG-Binding,

Dynamic-DHCP-Binding), VLAN identifier, and port identifier.

• All static entries are configured with an infinite lease time, which is indicated with a value of zero by the show ip

source-guard command.

• When source guard is enabled, traffic is filtered based upon dynamic entries learned via DHCP snooping or static

addresses configured in the source guard binding table with this command.

• Static bindings are processed as follows: -If there is no entry with same VLAN ID and MAC address, a new entry is

added to binding table using the type of static IP source guard binding.

- If there is an entry with same VLAN ID and MAC address, and the type of entry is static IP source guard binding,

then the new entry will replace the old one.

- If there is an entry with same VLAN ID and MAC address, and the type of the entry is dynamic DHCP snooping

binding, then the new entry will replace the old one and the entry type will be changed to static IP source guard

binding.

Example

This

Example

configures a static source-guard binding on port 5.

Console(config)#ip source-guard binding 11-22-33-44-55-66 vlan 1

192.168.0.99 interface ethernet 1/5

Console(config-if)#

Related Commands

ip source-guard

ip dhcp snooping

ip dhcp snooping vlan

show ip source-guard

This command shows whether source guard is enabled or disabled on each interface.

Command Mode

Privileged Exec

Example

Console#show ip source-guard
Interface Filter-type

500

Advertising
This manual is related to the following products: