The IP Source Guard is a security feature that restricts IP traffic on untrusted IPs and MAC addresses by filtering traffic based on the configured IP MAC bindings. It is a filter that permits traffic on LAN ports only when the IP address and MAC address of each packet matches entries in the IP-MAC Binding table. This feature helps prevent IP spoofing attacks when a host tries to spoof and use the IP address of another host.
To configure the IP source guard, follow these steps:
Step 1 | Click Security > IP Source Guard. | ||
Step 2 | Check Enable IP Source Guard if IP and MAC binding are required. | ||
Step 3 | Check Block Unknown MAC Address, if only the MAC address requires filtering irrespective of the IP Address. | ||
Step 4 | In the IP & MAC Binding Table, click Add and enter the Static IPv4 address and MAC address for binding. | ||
Step 5 | Click Apply. | ||
Step 6 | Click Edit or Delete to edit or delete and existing address.
|