Netgear M5300-28G-POE+ (GSM7228PSv1h2) - 12-Port Managed Gigabit Switch Softwarehandbuch

Seite von 764
Manage Device Security 
621
 M6100, M5300, and M7100 Series Managed Switches
The web management interface menu displays.
7. 
Select Security > Control > IP Source Guard > Interface Configuration.
8. 
Use the Interface check boxes to select the interface.
9. 
In the IPSG Mode list, select Disable or Enable.
This sets the administrative mode of IPSG on the interface. When IPSG mode is enabled, 
the sender IP address on this interface is validated against the DHCP snooping binding 
database. If IPSG is enabled, packets are not forwarded if the sender IP address is not in 
DHCP snooping binding database. The factory default is Disable.
10. 
In the IPSG Port Security list, select Disable or Enable.
This enables or disables the administrative mode of IPSG port security on the selected 
interface. When this is enabled, the packets are not forwarded if the sender MAC address 
is not in forwarding database (FDB) table or the DHCP snooping binding database. To 
enforce filtering based on MAC address other required configurations are as follows:
Enable port-security globally.
Enable port-security on the interface level.
IPSG port security cannot be enabled if IPSG is disabled. The factory default is Disable. 
Also, you cannot turn off IPv6SG port security while IPv6SG is enabled.
11. 
Click the Apply button.
The updated configuration is sent to the switch. Configuration changes take effect 
immediately.
Configure IP Source Guard Binding Settings
To configure IP source guard static binding settings:
1. 
Prepare your computer with a static IP address in the 169.254.100.0 subnet, for 
example, 169.254.100.201.
2. 
Connect an Ethernet cable from an Ethernet port on your computer to an Ethernet port on 
the switch.