HP MSR2000/3000/4000 Router Series Security Configuration Guide

284
Ste
p
Command
Remarks
3. Enable ARP restricted forwarding.
arp restricted-forwarding enable
By default, ARP restricted
forwarding is disabled.
Displaying and maintaining ARP detection
Execute display commands in any view and reset commands in user view.
Task Command
Display the VLANs enabled with
ARP detection.
display arp detection
Display the ARP detection statistics.
display arp detection statistics [ interface interface-type
interface-number ]
Clear the ARP detection statistics. reset arp detection statistics [ interface interface-type interface-number ]
User validity check configuration example
Network requirements
As shown in Figure 81, configure Switch B to perform user validity check based on 802.1X security entries
for connected hosts.
Figure 81 Network diagram
Configuration procedure
1. Add all interfaces on Switch B to VLAN 10, and specify the IP address of VLAN-interface 10 on
Switch A. (Details not shown.)
2. Configure the DHCP server on Switch A, and configure DHCP address pool 0.
<SwitchA> system-view
[SwitchA] dhcp enable
[SwitchA] dhcp server ip-pool 0
[SwitchA-dhcp-pool-0] network 10.1.1.0 mask 255.255.255.0