beautypg.com

Ip arp inspection – Brocade Communications Systems Brocate Ethernet Access Switch 6910 User Manual

Page 280

background image

230

Brocade 6910 Ethernet Access Switch Configuration Guide

53-1002581-01

ARP Inspection

10

ip arp inspection

This command enables ARP Inspection globally on the switch. Use the no form to disable this
function.

Syntax

[no] ip arp inspection

Default Setting

Disabled

Command Mode

Global Configuration

Command Usage

When ARP Inspection is enabled globally with this command, it becomes active only on those
VLANs where it has been enabled with the

ip arp inspection vlan

command.

When ARP Inspection is enabled globally and enabled on selected VLANs, all ARP request and
reply packets on those VLANs are redirected to the CPU and their switching is handled by the
ARP Inspection engine.

When ARP Inspection is disabled globally, it becomes inactive for all VLANs, including those
where ARP Inspection is enabled.

When ARP Inspection is disabled, all ARP request and reply packets bypass the ARP Inspection
engine and their manner of switching matches that of all other packets.

Disabling and then re-enabling global ARP Inspection will not affect the ARP Inspection
configuration for any VLANs.

When ARP Inspection is disabled globally, it is still possible to configure ARP Inspection for
individual VLANs. These configuration changes will only become active after ARP Inspection is
globally enabled again.

Example

Console(config)#ip arp inspection

Console(config)#

show ip arp inspection
configuration

Displays the global configuration settings for ARP Inspection

PE

show ip arp inspection
interface

Shows the trust status and inspection rate limit for ports

PE

show ip arp inspection log

Shows information about entries stored in the log, including the
associated VLAN, port, and address components

PE

show ip arp inspection
statistics

Shows statistics about the number of ARP packets processed, or
dropped for various reasons

PE

show ip arp inspection vlan

Shows configuration setting for VLANs, including ARP Inspection
status, the ARP ACL name, and if the DHCP Snooping database is
used after ACL validation is completed

PE

TABLE 56

ARP Inspection Commands (Continued)

Command

Function

Mode