Contents
xxxvii
Software Configuration Guide—Release 15.0(2)SG
OL-23818-01
CHAPTER
45 Configuring DHCP Snooping, IP Source Guard, and IPSG for Static Hosts 45-1
About DHCP Snooping 45-1
Trusted and Untrusted Sources 45-2
About the DHCP Snooping Database Agent 45-2
Option 82 Data Insertion 45-4
Configuring DHCP Snooping 45-6
Default Configuration for DHCP Snooping 45-7
Enabling DHCP Snooping 45-7
Enabling DHCP Snooping on the Aggregration Switch 45-9
Enabling DHCP Snooping and Option 82 45-10
Enabling DHCP Snooping on Private VLAN 45-12
Configuring DHCP Snooping on Private VLAN 45-12
Configuring DHCP Snooping with an Ethernet Channel Group 45-12
Enabling the DHCP Snooping Database Agent 45-13
Limiting the Rate of Incoming DHCP Packets 45-13
Configuration Examples for the Database Agent 45-15
Example 1: Enabling the Database Agent 45-15
Example 2: Reading Binding Entries from a TFTP File 45-17
Example 3: Adding Information to the DHCP Snooping Database 45-18
Displaying DHCP Snooping Information 45-18
Displaying a Binding Table 45-19
Displaying the DHCP Snooping Configuration 45-19
About IP Source Guard 45-19
Configuring IP Source Guard 45-20
Configuring IP Source Guard on Private VLANs 45-22
Displaying IP Source Guard Information 45-22
Displaying IP Source Binding Information 45-23
Configuring IP Source Guard for Static Hosts 45-24
About IP Source Guard for Static Hosts 45-24
Configuring IPSG for Static Hosts on a Layer 2 Access Port 45-25
IPSG for Static Hosts on a PVLAN Host Port 45-28
CHAPTER
47 Configuring Network Security with ACLs 47-1
About ACLs 47-2
Overview 47-2
Supported Features That Use ACLs 47-3
Router ACLs 47-3
Port ACLs 47-4