ECS4660-28F_Management Guide-R03

Table Of Contents
C
HAPTER
13
| Security Measures
ARP Inspection
– 413 –
Allow Zeros – Allows sender IP address to be 0.0.0.0.
Src-MAC – Validates the source MAC address in the Ethernet
header against the sender MAC address in the ARP body. This check
is performed on both ARP requests and responses.
Log Message Number – The maximum number of entries saved in a
log message. (Range: 0-256; Default: 5)
Log Interval The interval at which log messages are sent.
(Range: 0-86400 seconds; Default: 1 second)
WEB INTERFACE
To configure global settings for ARP Inspection:
1. Click Security, ARP Inspection.
2. Select Configure General from the Step list.
3. Enable ARP inspection globally, enable any of the address validation
options, and adjust any of the logging parameters if required.
4. Click Apply.
Figure 212: Configuring Global Settings for ARP Inspection
CONFIGURING
VLAN SETTINGS
FOR
ARP INSPECTION
Use the Security > ARP Inspection (Configure VLAN) page to enable ARP
inspection for any VLAN and to specify the ARP ACL to use.
CLI REFERENCES
"ARP Inspection" on page 1145
COMMAND USAGE
ARP Inspection VLAN Filters (ACLs)
By default, no ARP Inspection ACLs are configured and the feature is
disabled.