Ip dhcp snooping agent-option allow-untrusted – Allied Telesis AT-FS970M Series User Manual
Page 628

Chapter 42: DHCP Snooping Commands
628
IP DHCP SNOOPING AGENT-OPTION ALLOW-UNTRUSTED
Syntax
ip dhcp snooping agent-option allow-untrusted
Parameters
None
Mode
Global Configuration mode
Description
Use this command to enable DHCP Option 82 reception on untrusted
ports. When this command is enabled, the switch accepts incoming DHCP
packets that contain DHCP Option 82 data on untrusted ports. By default,
this command is disabled.
If the switch is connected via untrusted ports to edge switches that insert
DHCP Option 82 data into DHCP packets, you may need to allow these
DHCP packets through the untrusted ports by using the IP DHCP
SNOOPINFG AGENT-OPTION ALLOW-UNTRUSTED command.
When this command is disabled, the switch treats incoming DHCP
packets on untrusted ports that contain DHCP Option 82 as DHCP
snooping violations. The switch drops the packets and applies the
violation action specified by the IP DHCP SNOOPING VIOLATION
command. See “IP DHCP SNOOPING VIOLATION” on page 640.
Use the no version of the command, NO IP DHCP SNOOPING AGENT-
OPTION ALLOW-UNTRUSTED command, to disable DHCP Option 82
reception on untrusted ports.
Confirmation Command
“SHOW RUNNING-CONFIG” on page 166
Example
This example enables DHCP Option 82 data reception on untrusted ports:
awplus> enable
awplus# configure terminal
awplus(config)# ip dhcp snooping agent-option allow-
untrusted