Здравствуйте.
DES-3528 Build 3.10.B45 A5
Объясните пожалуйста как настроить в режиме dhcp snoop, хочу протестировать метод подключения через "IPoE". Вот так настроил:
Код:
Command: show dhcp_relay
DHCP/BOOTP Relay Status : Enabled
DHCP/BOOTP Hops Count Limit : 16
DHCP/BOOTP Relay Time Threshold : 0
DHCP Vendor Class Identifier Option 60 State: Disabled
DHCP Client Identifier Option 61 State: Disabled
DHCP Relay Agent Information Option 82 State : Enabled
DHCP Relay Agent Information Option 82 Check : Disabled
DHCP Relay Agent Information Option 82 Policy : Replace
DHCP Relay Agent Information Option 82 Remote ID : AC-F1-DF-3D-74-50
Interface Server 1 Server 2 Server 3 Server 4
------------ --------------- --------------- --------------- ---------------
Server VLAN ID List
--------------- -----------------------------------------------------------
192.168.254.218 254
DES-3528:admin#show address_binding
Command: show address_binding
Trap/Log : Enabled
DHCP Snoop(IPv4) : Enabled
DHCP Snoop(IPv6) : Disabled
ND Snoop
DES-3528:admin#show address_binding ip_mac all
Command: show address_binding ip_mac all
M(Mode) - D:DHCP, N:ND S:Static ST(ACL Status) - A:Active I:Inactive
IP Address MAC Address M ST Ports
--------------------------------------- ----------------- -- -- ---------------
Total Entries : 0
DES-3528:admin#show address_binding dhcp_snoop
Command: show address_binding dhcp_snoop
DHCP_Snoop(IPv4) : Enabled
DHCP_Snoop(IPv6) : Disabled
DES-3528:admin#show address_binding ports
Command: show address_binding ports
Port IPv4 IPv6 Mode Zero IP DHCP Packet Stop Learning
State State Threshold/Mode
----- -------- -------- ---- --------- ----------- --------------
1 Disabled Disabled ARP Not Allow Forward 500/Normal
2 Disabled Disabled ARP Not Allow Forward 500/Normal
3 Disabled Disabled ARP Not Allow Forward 500/Normal
4 Loose Disabled ACL Allow Forward 500/Normal
5 Disabled Disabled ARP Not Allow Forward 500/Normal
6 Disabled Disabled ARP Not Allow Forward 500/Normal
7 Disabled Disabled ARP Not Allow Forward 500/Normal
8 Disabled Disabled ARP Not Allow Forward 500/Normal
9 Disabled Disabled ARP Not Allow Forward 500/Normal
10 Disabled Disabled ARP Not Allow Forward 500/Normal
11 Disabled Disabled ARP Not Allow Forward 500/Normal
12 Disabled Disabled ARP Not Allow Forward 500/Normal
13 Disabled Disabled ARP Not Allow Forward 500/Normal
14 Disabled Disabled ARP Not Allow Forward 500/Normal
15 Disabled Disabled ARP Not Allow Forward 500/Normal
16 Disabled Disabled ARP Not Allow Forward 500/Normal
17 Disabled Disabled ARP Not Allow Forward 500/Normal
18 Disabled Disabled ARP Not Allow Forward 500/Normal
19 Disabled Disabled ARP Not Allow Forward 500/Normal
20 Disabled Disabled ARP Not Allow Forward 500/Normal
21 Disabled Disabled ARP Not Allow Forward 500/Normal
22 Disabled Disabled ARP Not Allow Forward 500/Normal
23 Disabled Disabled ARP Not Allow Forward 500/Normal
24 Disabled Disabled ARP Not Allow Forward 500/Normal
25 Disabled Disabled ARP Not Allow Forward 500/Normal
26 Disabled Disabled ARP Not Allow Forward 500/Normal
27 Disabled Disabled ARP Not Allow Forward 500/Normal
28 Disabled Disabled ARP Not Allow Forward 500/Normal
DES-3528:admin#show address_binding blocked
Command: show address_binding blocked
Next possible completions:
all vlan_name
DES-3528:admin#show address_binding blocked all
Command: show address_binding blocked all
VID VLAN Name MAC Address Port
---- -------------------------------- ----------------- ----
Total Entries : 0
Адрес по DHCP + Option 82 получает, но трафик не пускает. Схема: сервер (локальный интерфейс DHCP) - свич (проброшен VLAN)
В логе:
Код:
DES-3528:admin#sh log
Command: show log
Index Date Time Level Log Text
----- ---------- -------- ------- ----------------------------------------------
98 2014-08-04 18:09:42 WARN(4) Unauthenticated IP-MAC address and discarded b
y ip mac port binding(IP:<192.168.254.81>, MAC:
<8C-89-A5-02-99-06>, Port<4>)
97 2014-08-04 18:09:40 INFO(6) Port 4 link up, 100Mbps FULL duplex
96 2014-08-04 18:09:37 INFO(6) Port 4 link down
Если прописать жёстко связку MAC+IP то работает.