
Utility Commands AT8902M
AT8902M CLI Reference Manual Page 5 - 42
5.9 DHCP Filtering
You can configure the DHCP Filtering feature as a security measure against
unauthorized DHCP servers. DHCP filtering works by allowing you to configure each
port as either a trusted port or an untrusted port. To optimize the DHCP filtering
feature, configure the port that is connected to an authorized DHCP server on your
network as a trusted port. Any DHCP responses received on a trusted port are
forwarded. Make sure that all other ports are untrusted so that any DHCP (or BootP)
responses received are discarded.
You can configure DHCP filtering on physical ports and LAGs. DHCP filtering is not
operable on VLAN interfaces.
5.9.1 ip dhcp filtering
This command enables DHCP filtering globally.
Default
disabled
Format ip dhcp filtering
Mode Global Config
5.9.1.1 no ip dhcp filtering
This command disables DHCP filtering.
Format
no ip dhcp filtering
Mode Global Config
5.9.2 ip dhcp filtering trust
This command configures an interface as trusted.
Default
untrusted
Format ip dhcp filtering trust
Mode Interface Config
5.9.2.1 no ip dhcp filtering trust
This command returns an interface to the default value for DHCP filtering.
Format
no ip dhcp filtering trust
Mode Interface Config
5.9.3 show ip dhcp filtering
This command displays the DHCP filtering configuration.
Format
show ip dhcp filtering
Mode Privileged EXEC
Interface The interface by slot/port.
Trusted Indicates whether the interface is trusted or untrusted.
Kommentare zu diesen Handbüchern