Tp-Link T2600G-28MPS (TL-SG3424P) [301/379] Arp defend

Tp-Link T2600G-28MPS (TL-SG3424P) [301/379] Arp defend
Configuration Procedure:
Step
Operation
Description
1
Bind the IP address, MAC
address, VLAN ID and the
connected Port number of
the Host together.
Required. On the IP-MAC Binding
page, bind the IP
address,
MAC address, VLAN ID and the connected
Port number of the Host together via Manual Binding,
ARP Scanning or DHCP Snooping.
2
Enable the protection for
the bound entry.
Required. On the Network SecurityIP-MAC
Binding→Binding Table
page, specify a protect type
for the corresponding bound entry.
3
Specify the trusted port. Required. On the Network SecurityARP
Inspection→ARP Detect
page, specify the trusted port.
The specific ports, such as up-linked port, routing port
and LAG port, should be set as Trusted Port.
4
Enable ARP Detect feature. Required. On the Network SecurityARP
Inspection→ARP Detect page, enable the ARP Detect
feature.
14.5.2 ARP Defend
With the ARP Defend enabled, the switch can terminate receiving the ARP packets for 300
seconds when the transmission speed of the legal ARP packet on the port exceeds the defined
value so as to avoid ARP Attack flood.
Choose the menu Network SecurityARP Inspection→ARP Defend to load the following
page.
Figure 14-20 ARP Defend
The following entries are displayed on this screen:
289

Содержание

Скачать