beautypg.com

Displaying dhcp snooping configuration – H3C Technologies H3C S3100 Series Switches User Manual

Page 544

background image

3-12

z

Enable DHCP snooping and specify trusted ports on the switch before configuring IP filtering.

z

You are not recommended to configure IP filtering on the ports of an aggregation group.

z

To create a static binding after IP filtering is enabled with the mac-address keyword specified on a

port, the mac-address argument must be specified; otherwise, the packets sent from this IP

address cannot pass the IP filtering.

z

A static entry has a higher priority than the dynamic DHCP snooping entry that has the same IP

address as the static one. That is, if the static entry is configured after the dynamic entry is

recorded, the static entry overwrites the dynamic entry; if the static entry is configured before

DHCP snooping is enabled, no DHCP client can obtain the IP address of the static entry.

z

The VLAN ID of the IP static binding configured on a port is the default VLAN ID of the port.

Displaying DHCP Snooping Configuration

After the above configurations, you can verify the configurations by executing the display command in

any view.

Follow these steps to display DHCP snooping:

Operation

Command

Description

Display the user IP-MAC
address mapping entries
recorded by the DHCP
snooping function

display dhcp-snooping [ unit unit-id ]

Display the (enabled/disabled)
state of the DHCP snooping
function and the trusted ports

display dhcp-snooping trust

Display the IP static binding
table

display ip source static binding
[ vlan vlan-id | interface interface-type
interface-number
]

You can execute the
display command in
any view

Remove DHCP snooping
entries

reset dhcp-snooping [ ip-address ]

Available in user view

Among S3100 series ethernet switches, only S3100-EI series switches support the display

dhcp-snooping trust and display ip source static binding commands.