IP Verify Source Question
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-04-2023 06:25 AM
Hi,
I have 3 ports going to a cross domain solution on our network. The ports are configured as an access port with a vlan. Currently these ports do not have "ip verify source" configured on them. This would be a "finding" for validation checks. I understand the use for this command for standard user ports and dhcp snooping, but i'm a little puzzled on what the outcome would be in this case?
Thank you for any advice.
- Labels:
-
Other Switching
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-04-2023 06:41 AM
Can you more elaborate?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-04-2023 06:46 AM
@MHM Cisco Worldthanks for your response.
I guess i'm concerned that I would inadvertently block traffic coming across these ports since the CDS device transfers data from a separate domain. Its not like a standard user port where one device uses on ip and sends data from the same source every time. The cds would use the same ip but many streams of traffic would cross it.
