Zyxel XGS2220-30HP-GB0101F XGS2220-30HP 24-Port GbE L3 Access PoE+ Switch with 6 10G Uplink

Zyxel XGS2220 Series User Guide - Page 561

For XGS2220-30HP-GB0101F.

PDF File Manual, 727 pages, Read Online | Download pdf file

XGS2220-30HP-GB0101F photo
Loading ...
Loading ...
Loading ...
Chapter 75 DHCP Snooping
XGS2220 Series User’s Guide
561
75.7 Technical Reference
This section provides technical background information on the topics discussed in this chapter.
75.7.1 DHCP Snooping Overview
Use DHCP snooping to filter unauthorized DHCP packets on the network and to build the binding table
dynamically. This can prevent clients from getting IP addresses from unauthorized DHCP servers.
75.7.1.1 Trusted vs. Untrusted Ports
Every port is either a trusted port or an untrusted port for DHCP snooping. This setting is independent of
the trusted or untrusted setting for ARP inspection. You can also specify the maximum number for DHCP
packets that each port (trusted or untrusted) can receive each second.
Trusted ports are connected to DHCP servers or other switches. The Switch discards DHCP packets from
trusted ports only if the rate at which DHCP packets arrive is too high. The Switch learns dynamic
bindings from trusted ports.
Note: If DHCP is enabled and there are no trusted ports, DHCP requests will not succeed.
Untrusted ports are connected to subscribers. The Switch discards DHCP packets from untrusted ports in
the following situations:
The packet is a DHCP server packet (for example, OFFER, ACK, or NACK).
The rate at which DHCP packets arrive is too high.
75.7.1.2 DHCP Snooping Database
The Switch stores the binding table in volatile memory. If the Switch restarts, it loads static bindings from
permanent memory but loses the dynamic bindings, in which case the devices in the network have to
send DHCP requests again. As a result, it is recommended you configure the DHCP snooping database.
Option 82 Profile Select a pre-defined DHCP option 82 profile that the Switch applies to the specified ports in
this VLAN. The Switch adds the information (such as slot number, port number, VLAN ID and/
or system name) specified in the profile to DHCP requests that it broadcasts to the DHCP
VLAN, if specified, or VLAN. You can specify the DHCP VLAN in the SECURITY > DHCP
Snooping > DHCP Snp. Setup screen.
Note: The profile you select here has priority over the one you select in the
SECURITY > DHCP Snooping > DHCP Snp. VLAN Setup screen.
Apply Click Apply to save your changes to the Switch’s run-time memory. The Switch loses these
changes if it is turned off or loses power, so use the Save link on the top navigation panel to
save your changes to the non-volatile memory when you are done configuring.
Clear Click Clear to clear the fields to the factory defaults.
Cancel Click Cancel to not save the configuration you make and return to the last screen.
Table 292 SECURITY > DHCP Snooping > DHCP Snp. VLAN Port Setup > Add/Edit (continued)
LABEL DESCRIPTION
Loading ...
Loading ...
Loading ...