The version V100R005 binding MAC and IP through DHCP snooping.

Publication Date:  2012-09-17 Views:  175 Downloads:  0
Issue Description
After binding MAC and IP on the interface configured DHCP, it will appear the not on-line users’ IP be acquired by other users not binding. The customer demands the binding IP don’t be acquired by others.
Alarm Information
None.
Handling Process
system-view                          Enter the system view.
dhcp snooping enable        Enable DHCP Snooping function
Enable global DHCP Snooping function first, then enable the Layer 3 interface DHCP Snooping function.
Do the command interface interface-type interface-number, enter interface view.
The interfaces are L3 interface, which include:
Ethernet interface (FE、GE)
Ethernet sub-interface
VlanIf  port
Eth-Trunk port
VE port
dhcp snooping enable,          Enable the DHCP Snooping function of L3 interface.
dhcp snooping check { arp | ip | dhcp-chaddr | dhcp-request } enable,Configure the interface message checking.
dhcp snooping bind-table static ip-address ip-address mac-address mac-address,Configure the static entry of IP and MAC binding table
dhcp snooping nomatch-packet [ arp | ip ] action { forward | discard } [interface interface-type interface-number ],Configure the methods to do with the unmatched message.
When can’t find out the packet corresponding entries in the DHCP Snooping binding table, it will drop packets or continue forwarding packets according to the user’s configuration.
Root Cause
None.
Suggestions
The method mentioned above can be used in the version V100R005 of USG. Configuring DHCP Snooping binding can also solve the problem to switch.

END