10-14-2003 07:32 PM - edited 03-02-2019 11:01 AM
can I filter arp packets in 3550 switch to prevent PCs virus or binding the ip and mac in edge port? PACL failed to do it!
10-14-2003 09:17 PM
If you block arp packets you would basically render the LAN useless since every IP based machine is going to at minimum be needing to arp for the mac address of the router interface. Now if you are big into the hardcoding thing.... :)
10-14-2003 09:54 PM
hi,2tpanine:
It seems that you misunderstand me.I mean "filter" ones ip NOT "block" all arp packets.
10-14-2003 11:33 PM
On the 2950 switches we use the interface command port security max-mac-count x with the global command mac-address-table secure MAC_ADDRESS port vlan X, to filter arp from unwanted clients. I believe that the 3550 has the same funtionality.
HTH
Niels
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: