Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation
Guide That Contains This Content
[+] Expand All
[-] Collapse All

    vlan (Access Port Security)

    Syntax

    vlan (all | vlan-name) {(arp-inspection | no-arp-inspection);dhcp-option82 {circuit-id {prefix (Circuit ID for Option 82) hostname;use-interface-description;use-vlan-id;}remote-id {prefix hostname | mac | none;use-interface-description;use-string string;}vendor-id <string>;}(examine-dhcp | no-examine-dhcp);examine-fip {fc-map fc-map-value;}(ip-source-guard | no-ip-source-guard);mac-move-limit limit action action;}

    Hierarchy Level

    Release Information

    Statement introduced in Junos OS Release 9.0 for EX Series switches.

    Description

    Apply any of the following security options to a VLAN:

    • DHCP snooping
    • DHCP option 82
    • Dynamic ARP inspection (DAI)
    • FIP snooping
    • IP source guard
    • MAC move limiting

    The remaining statements are explained separately.

    Tip: To display a list of all configured VLANs on the system, including VLANs that are configured but not committed, type ? after vlan or vlans in your configuration mode command line. Note that only one VLAN is displayed for a VLAN range.

    Options

    all—Apply the feature to all VLANs.

    vlan-name—Apply the feature to the specified VLAN.

    Required Privilege Level

    system—To view this statement in the configuration.

    system-control—To add this statement to the configuration.

    Published: 2012-12-07