The set ip-source-guard verify command configures IP source guard filtering item based on specific interface and VLAN.
The delete ip-source-guard verify command deletes the configuration.
Command Syntax
set ip-source-guard interface <interface-name> vlan <vlan-id> verify <ip | ip+mac>
delete ip-source-guard interface <interface-name> vlan <vlan-id> verify
Parameter
Parameter | Description |
interface <interface-name> | Specifies an ingress interface name. The value is a physical port or a LAG port, such as ge-1/1/1, te-1/1/2, ae1. Note: IP source guard be enabled on a physical interface or a Link Aggregation Group (LAG) interface but cannot be enabled on the member interfaces of a LAG. |
vlan <vlan-id> | Specifies a VLAN ID. The value is an integer that ranges from 1 to 4094.
|
verify <ip | ip+mac> | Specifies the filtering item based on specific interface and VLAN. The value could be ip or ip+mac.
The default value is ip, IP Source Guard filtering item is interface + VLAN + Source IP. |
Example
Configure IP source guard filtering item based on specific interface and VLAN.
admin@PICOS# set ip-source-guard interface te-1/1/3 vlan 20 verify ip+mac admin@PICOS# commit