cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
5039
Views
0
Helpful
3
Replies

Prevent Duplicate ip address

RGENTIL87
Level 1
Level 1

hey guys

i have a question

i´d like to prevent duplicate ip add in the network.

for examplo, if the user setup the ip address of gateway , are there any mechanism that can prevent it , to minimize the impact ?

thanks

3 Replies 3

cadet alain
VIP Alumni
VIP Alumni

Hi,

give them IP addresses with DHCP and use DHCP snooping along with IP source guard  on access switches so they won't be able to modify their IP address.

Regards.

Alain

Don't forget to rate helpful posts.

Don't forget to rate helpful posts.

Hello

as suggested use DHCP snooping which will meet your requirements.

enabling snooping:

switch # ip dhcp snooping

switch # ip dhcp snooping vlan     ----> if you have configured vlan's and willing to enable snooping to vlans.

Per port config:

switch # int fa 1/30

switch # ip verify source port-security ---> makes the port as untrusted1

Please go through the below link which may help you

:http://www.cisco.com/en/US/docs/switches/lan/catalyst3550/software/release/12.2_25_see/configuration/guide/swdhcp82.html

Please rate the helpful posts,

thanks,

srikanth

onibala
Level 1
Level 1

I am using the new SISF with device tracking, and it does not prevent duplicate IP address.

I setup a policy for user port with the following configuration:

security-level guard

device-role node

limit address-count 1

Global: device-tracking tracking auto-source

Thank you,

Audie

Review Cisco Networking for a $25 gift card