Web Management Guide-R05

Table Of Contents
Chapter 12
| Security Measures
IP Source Guard
– 360
Parameters
These parameters are displayed:
Filter Type
– Configures the switch to filter inbound traffic based source IP
address, or source IP address and corresponding MAC address. (Default: None)
None
– Disables IP source guard filtering on the port.
SIP
– Enables traffic filtering based on IP addresses stored in the binding
table.
SIP-MAC
– Enables traffic filtering based on IP addresses and
corresponding MAC addresses stored in the binding table.
Max Binding Entry
– The maximum number of entries that can be bound to an
interface. (Range: 1-5; Default: 5)
This parameter sets the maximum number of address entries that can be
mapped to an interface in the binding table, including both dynamic entries
discovered by DHCP snooping (see “DHCP Snooping” on page 364) and static
entries set by IP source guard (see Configuring Static Bindings for IP Source
Guard” on page 360).
Web Interface
To set the IP Source Guard filter for ports:
1.
Click Security, IP Source Guard, Port Configuration.
2.
Set the required filtering type for each port.
3.
Click Apply
Figure 225: Setting the Filter Type for IP Source Guard
Configuring
Static Bindings for IP
Source Guard
Use the Security > IP Source Guard > Static Binding page to bind a static address to
a port. Table entries include a MAC address, IP address, lease time, entry type
(Static, Dynamic), VLAN identifier, and port identifier. All static entries are
configured with an infinite lease time, which is indicated with a value of zero in the
table.