Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

vlan (Access Port Security)

Syntax

vlan (all | vlan-name) {(arp-inspection | no-arp-inspection);dhcp-option82 {circuit-id {prefix (Circuit ID for Option 82) hostname;use-interface-description;use-vlan-id;}remote-id {prefix hostname | mac | none;use-interface-description;use-string string;}vendor-id <string>;}(examine-dhcp | no-examine-dhcp);examine-fip {fc-map fc-map-value;}(ip-source-guard | no-ip-source-guard);mac-move-limit limit action action;}

Hierarchy Level

Release Information

Statement introduced in Junos OS Release 9.0 for EX Series switches.

Description

Apply any of the following security options to a VLAN:

  • DHCP snooping
  • DHCP option 82
  • Dynamic ARP inspection (DAI)
  • FIP snooping
  • IP source guard
  • MAC move limiting

The remaining statements are explained separately.

Tip: To display a list of all configured VLANs on the system, including VLANs that are configured but not committed, type ? after vlan or vlans in your configuration mode command line. Note that only one VLAN is displayed for a VLAN range.

Options

all—Apply the feature to all VLANs.

vlan-name—Apply the feature to the specified VLAN.

Required Privilege Level

system—To view this statement in the configuration.

system-control—To add this statement to the configuration.

Published: 2012-12-07