Chapter 21 IP Source Guard

Figure 84 ARP Inspection Log Status

The following table describes the labels in this screen.

Table 58 ARP Inspection Log Status

LABEL

DESCRIPTION

Clearing log status table

Click Apply to remove all the log messages that were generated by ARP

 

packets and that have not been sent to the syslog server yet.

 

 

Total number of logs

This field displays the number of log messages that were generated by

 

ARP packets and that have not been sent to the syslog server yet. If one or

 

more log messages are dropped due to unavailable buffer, there is an

 

entry called overflow with the current number of dropped log messages.

 

 

Index

This field displays a sequential number for each log message.

 

 

Port

This field displays the source port of the ARP packet.

 

 

VID

This field displays the source VLAN ID of the ARP packet.

 

 

Sender MAC

This field displays the source MAC address of the ARP packet.

 

 

Sender IP

This field displays the source IP address of the ARP packet.

 

 

Num Pkts

This field displays the number of ARP packets that were consolidated into

 

this log message. The Switch consolidates identical log messages

 

generated by ARP packets in the log consolidation interval into one log

 

message. You can configure this interval in the ARP Inspection

 

Configure screen. See Section 21.5 on page 164.

 

 

Reason

This field displays the reason the log message was generated.

 

static deny: An ARP packet was discarded because it violated a static

 

binding with the same MAC address and VLAN ID.

 

deny: An ARP packet was discarded because there were no bindings with

 

the same MAC address and VLAN ID.

 

static permit: An ARP packet was forwarded because it matched a static

 

binding.

 

In the ARP Inspection VLAN Configure screen, you can configure the

 

Switch to generate log messages when ARP packets are discarded or

 

forwarded based on the VLAN ID of the ARP packet. See Section 21.5.2

 

on page 167.

 

 

Time

This field displays when the log message was generated.

 

 

21.5 ARP Inspection Configure

Use this screen to enable ARP inspection on the Switch. You can also configure the length of time the Switch stores records of discarded ARP packets and global settings for the ARP inspection log. To open this screen, click Advanced Application > IP Source Guard > ARP Inspection > Configure.

164

 

ES-2024 Series User’s Guide