beautypg.com

NETGEAR AV Line M4250 GSM4210PX 8-Port Gigabit PoE+ Compliant Managed AV Switch with SFP (220W) User Manual

Page 602

background image

The Interface Configuration page displays.

6. Select whether to display physical interfaces, LAGs, or both by clicking one of the

following links above the table heading:

• 1 (the unit ID of the switch): Only physical interfaces are displayed. This is the

default setting.

• LAG: Only LAGs are displayed.
• All: Both physical interfaces and LAGs are displayed.

7. Select one or more interfaces by taking one of the following actions:

To configure a single interface, select the check box associated with the port, or

type the port number in the Go To Interface field and click the Go button.

To configure multiple interfaces with the same settings, select the check box

associated with each interface.

To configure all interfaces with the same settings, select the check box in the

heading row.

8. From the Trust Mode menu, select the trust mode:

• Disabled. The interface is considered to be untrusted and could potentially be

used to launch a network attack. DHCP server messages are checked against the
bindings database. On untrusted ports, DHCP snooping enforces the following
security rules:

DHCP packets from a DHCP server are dropped.

DHCP messages are dropped if the MAC address is in the snooping database
but the binding’s interface is other than the interface where the message was
received.

DHCP packets are dropped if the source MAC address does not match the
client hardware address and if MAC address validation is globally enabled.

• Enabled. The interface is considered to be trusted and forwards DHCP server

messages without validation.

9. From the Invalid Packets menu, select the packet logging mode.

When enabled, the DHCP snooping feature generates a log message when an invalid
packet is received and dropped by the interface.

10. In the Rate Limit (pps) field, specify the rate limit value for DHCP snooping purposes.

If the incoming rate of DHCP packets per second exceeds the configured burst
interval per second, the port shuts down. If the rate limit is None (which is the default),
the burst interval is also not applicable, and rate limiting is disabled.

Main User Manual

602

Manage Switch Security

AV Line of Fully Managed Switches M4250 Series Main User Manual