1、在防火墙上定义对应的IP-mac对应表
config firewall ipmacbinding table
edit 1
set ip 192.167.1.111
set mac 00:0a:eb:7c:16:05
set name "robbie"
set status enable
next
end
2、在防火墙上定义ip-mac绑定的规则
config firewall ipmacbinding setting
set bindthroughfw enable ( 符合ip-mac绑定表允许通过防火墙,缺省生效)
set bindtofw enable (符合ip-mac绑定表允许管理防火墙)
end
3、在防火墙对应的接口生效ip-mac绑定规则
Fortigate-60 # config sys inter
(interface)# edit internal
(internal)# set ipmac
disable
disable setting
enable
enable setting
(internal)# set ipmac en
(internal)# end
修改主机IP,后做测试