RE: Local Proxy ARP [bcc][faked-from]

From: marvin greenlee (marvin@ccbootcamp.com)
Date: Thu Dec 09 2004 - 19:57:43 GMT-3


Security level has to do with IPSO options.

Router(config)#int fa0/0
Router(config-if)#ip security dedicated secret genser

Router#show ip int fa0/0
FastEthernet0/0 is up, line protocol is up
  Internet address is 10.1.1.1/8
  Broadcast address is 255.255.255.255
  Address determined by setup command
  MTU is 1500 bytes
  Helper address is not set
  Directed broadcast forwarding is disabled
  Outgoing access list is not set
  Inbound access list is not set
  Proxy ARP is enabled
  Local Proxy ARP is disabled
  Security level is dedicated secret genser

"Cisco provides IP Security Option (IPSO) support as described in RFC 1108.
Cisco's implementation is only minimally compliant with RFC 1108 because the
Cisco IOS software only accepts and generates a 4-byte IPSO.

IPSO is generally used to comply with the U.S. government's Department of
Defense security policy."

Cisco - Configuring IP Security Options -
http://www.cisco.com/en/US/products/sw/iosswrel/ps1835/products_configuratio
n_guide_chapter09186a00800ca7d3.html

- Marvin Greenlee, CCIE#12237
Network Learning Inc
marvin@ccbootcamp.com
www.ccbootcamp.com (Cisco Training)

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
ccie2be
Sent: Thursday, December 09, 2004 2:29 PM
To: Group Study
Subject: Local Proxy ARP [bcc][faked-from]
Importance: Low

Hi guys,

When you do a show ip int X, one of the things listed is "Local Proxy ARP
<enabled |disabled>". It's right under the line for Proxy ARP.

I know what proxy arp is but what's LOCAL proxy arp?

And, if I needed to, how would I enable it?

Also, the next line after the Local proxy arp says "Security Level is
default". What's that about?

Any insight would be appreciated.

TIA, Tim



This archive was generated by hypermail 2.1.4 : Mon Jan 03 2005 - 10:31:26 GMT-3