VM Check Configuration
642
G8264 Command Reference for ENOS 8.4
The following table describes the VM Check validation options used for MAC
address spoof prevention.
Table 364.
VM Check Configuration Options
Command Syntax and Usage
virt vmcheck acls max <1‐256>
Configures the maximum number of ACLs that can be set up for MAC address
spoofing prevention in advanced validation mode.
The default value is 50.
Command mode: Global configuration
default virt vmcheck acls
Sets to default maximum number of ACLs that can be set up for MAC address
spoofing prevention in advanced validation mode.
Command mode: Global configuration
no virt vmcheck acls
Disables ACL‐based MAC address spoofing prevention in advanced
validation mode.
Command mode: Global configuration
virt vmcheck action advanced {acl|link|log}
Sets up action taken when detecting MAC address spoofing in advanced
validation mode:
acl registers a syslog entry and installs an ACL to drop traffic incoming on
the corresponding switch port originating from the spoofed MAC address
link registers a syslog entry and disables the corresponding switch port
log registers a syslog entry
The default setting is acl.
Command mode: Global configuration
virt vmcheck action basic {link|log}
Sets up action taken when detecting MAC address spoofing in basic validation
mode:
link registers a syslog entry and disables the corresponding switch port
log registers a syslog entry
The default setting is link.
Command mode: Global configuration
default virt vmcheck action {advanced|basic}
Sets to default action taken when detecting MAC address spoofing in
advanced or basic validation mode.
Command mode: Global configuration