Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

secure-access-port

Syntax

secure-access-port {dhcp-snooping-file {location local_pathname | remote_URL;timeout seconds;write-interval seconds;}interface (all | interface-name) {allowed-mac {mac-address-list;}(dhcp-trusted | no-dhcp-trusted);fcoe-trusted;mac-limit limit action action;no-allowed-mac-log;persistent-learning;static-ip ip-address {vlan vlan-name;mac mac-address; }}vlan (all | vlan-name) {(arp-inspection | no-arp-inspection) [forwarding-class class-name;}dhcp-option82 {circuit-id {prefix hostname;use-interface-description;use-vlan-id;} remote-id {prefix hostname | mac | none;use-interface-description;use-string string;}vendor-id <string>;}(examine-dhcp | no-examine-dhcp) {forwarding-class class-name;}examine-fip {fc-map fc-map-value;}(ip-source-guard | no-ip-source-guard);mac-move-limit limit action action;}}

Hierarchy Level

Release Information

Statement introduced in Junos OS Release 9.0 for EX Series switches.

Description

Configure port security features, including MAC limiting, dynamic ARP inspection, whether interfaces can receive DHCP responses, DHCP snooping, IP source guard, DHCP option 82, MAC move limiting, and FIP snooping.

The remaining statements are explained separately.

Required Privilege Level

system—To view this statement in the configuration.
system-control—To add this statement to the configuration.

Published: 2012-12-07