DES-7200 Configuration Guide Chapter 12 NFPP Configuration
Command Function
DES-7200# configure terminal
Enter the global configuration mode.
DES-7200(config)# nfpp
Enter the nfpp configuration mode.
DES-7200(config-nfpp)# dhcp-guard
isolate-period [seconds | permanent]
Configure the global isolated time, ranging 0s,
30-86400s(one day). The default value is 0s,
representing no isolation. Permanent represents
permanent isolation.
DES-7200(config-nfpp)# end
Return to the privileged EXEC mode.
DES-7200# configure terminal
Enter the global configuration mode.
DES-7200(config)# interface
Enter the interface configuration mode.
DES-7200(config-if)# nfpp arp-guard
isolate-period [seconds | permanent]
Configure the isolated time on the port, ranging 0s,
180-86400s(one day). By default, the isolated time is
configured globally. 0s represents no isolation.
Permanent represents permanent isolation.
DES-7200(config-if)# end
Return to the privileged EXEC mode.
DES-7200# show nfpp dhcp-guard
Show the parameter settings.
DES-7200# copy running-config
Save the configurations.
To restore the global isolated time to the default value, use the no dhcp-guard isolate-period
command in the nfpp configuration mode. If the isolated time has been configured on a port,
you can use the no dhcp-guard isolate-period command to remove the port-based isolated
time configuration in the interface configuration mode.
12.6.4 Configuring the
monitored time
If the isolated time is 0 (that is no isolation), the serviceview monitor will be performed to
auto-monitor the attacker according to the configured monitored period, providing the attacker
information in the system. If the isolated time is but not 0, the DHCP-guard will perform
hardware isolation towards the hosts using the serviceview monitor.
Command Function
DES-7200# configure terminal
Enter the global configuration mode.
DES-7200(config)# nfpp
Enter the nfpp configuration mode.