GS752TP, GS728TP, and GS728TPP Gigabit Smart Switches

Services—DHCP Snooping

DHCP snooping is a useful feature that provides security by filtering untrusted DHCP messages and by building and maintaining a DHCP snooping binding table. An untrusted message is a message that is received from outside the network or firewall and that can cause traffic attacks within your network. The DHCP snooping binding table contains the MAC address, IP address, lease time, binding type, VLAN number, and interface information that corresponds to each of the local untrusted interfaces of a switch. An untrusted interface is an interface that is configured to receive messages from outside the network or firewall. A trusted interface is an interface that is configured to receive messages only from within the network.

DHCP snooping acts like a firewall between untrusted hosts and DHCP servers. It also provides way to differentiate between untrusted interfaces connected to the end user and trusted interfaces connected to the DHCP server or another switch.

From the Services menu, you can access features described in the following sections:

DHCP Snooping Global Configuration

DHCP Snooping Interface Configuration

DHCP Snooping Binding Configuration

DHCP Snooping Persistent Configuration

DHCP Snooping Global Configuration

To configure DHCP snooping global settings:

1. Select System > Services > DHCP Snooping > Global Configuration.

67

Page 67
Image 67
NETGEAR GS728TPP, GS752TP manual Services-DHCP Snooping, Dhcp Snooping Global Configuration