User manual

C
HAPTER
4
| Configuring the Switch
Configuring Security
– 112 –
PARAMETERS
These parameters are displayed:
Global Configuration
Mode – Enables or disables IP Source Guard globally on the switch. All
configured ACEs will be lost when enabled. (Default: Disabled)
N
OTE
:
DHCP snooping must be enabled for dynamic clients to be learned
automatically.
Translate dynamic to static – Click to translate all dynamic entries to
static entries.
Port Mode Configuration
Port – Port identifier
Mode – Enables or disables IP Source Guard on the specified ports.
Only when both Global Mode and Port Mode on a given port are
enabled, will ARP Inspection take effect on a given port.
(Default: Disabled)
Max Dynamic Clients – Specifies the maximum number of dynamic
clients that can be learned on given ports. This value can be 0, 1, 2 or
unlimited. If the port mode is enabled and the maximum number of
dynamic clients is equal 0, the switch will only forward IP packets that
are matched in static entries for a given port. (Default: Unlimited)
WEB INTERFACE
To set the IP Source Guard filter for ports:
1. Click Advanced Configuration, Security, Network, IP Source Guard,
Configuration.
2. Enable or disable IP Source Guard globally and for any given ports.
3. Set the maximum number of dynamic clients for any port.
4. Click Save.