|
Slide 14 shows the result of enabling DHCP snooping in step 1 and all trusted port configuration in step 2 and 5.DHCP snooping is a layer two feature that implements better security in an Ethernet switch environment by allowing its users to create both trusted and untrusted ports.The port for the gateway Gigabit Ethernet (Gi0/0) has been configured to be trusted by DHCP snooping. Trusted ports receive DHCP responses and are not monitored whereas untrusted ports are monitored for any suspicious activities.This prevents rogues DHCP servers from creating fake DHCP offers to clients. |