Hello, we plan to use DAI on our data center infrastracture, as well as other security features.
In the feature description, arp inspection blocks Gratuitous ARP packets to prevend man-in-the-middle attacks.
But I supposed that when a cluster composed of different servers (or a network bond with a standby interface) does a takeover form the active component to the standby one, the server (or interface) becoming active send a Gratuitous ARP to update the ARP table of the router with the new mac-address.
It seems to me ARP inspection disrupts cluster takeover.
Is this true?
Thank you all.