D-Link 28F Switch User Manual


 
xStack
®
DES-3200-10/18/28/28F Layer 2 Ethernet Managed Switch User Manual
ARP Spoofing Prevention Settings
ARP spoofing, also known as ARP poisoning, is a method to attack an Ethernet network which may allow an attacker
to sniff data frames on a LAN, modify the traffic, or stop the traffic altogether (known as a Denial of Service - DoS
attack). The principle of ARP spoofing is to send the fake, or spoofed ARP messages to an Ethernet network.
Generally, the aim is to associate the attacker's or random MAC address with the IP address of another node (such as
the default gateway). Any traffic meant for that IP address would be mistakenly re-directed to the node specified by
the attacker.
To prevent ARP spoofing attack, the switch uses Packet Content ACL to block the invalid ARP packets which contain
faked gateway’s MAC and IP binding.
To view this window, click Configuration > ARP Spoofing Prevention Settings as shown below:
Figure 2 - 61. ARP Spoofing Prevention Settings window
The following fields can be set or viewed:
Parameter Description
Gateway IP Address
Enter the IP address of the gateway.
Gateway MAC
Address
Enter the MAC address of the gateway.
Ports (e.g.: 1, 7-10)
Specify the switch ports for which to configure the ARP Spoofing Prevention settings. Tick
the All Ports check box to configure this entry for all ports on the Switch.
56