Enabling Trust on a Port for a Specific VRF

The default trust setting for a port is untrusted. Leave the trust settings for ports that are connected to host ports as untrusted.

The VRF must already exist.

  1. Enter global configuration mode using the configure terminal command.
    device# configure terminal
  2. Enter interface configuration mode.
    device(config)# interface ethernet 1/1/4
  3. Enable trust for the specific VRF.
    device(config-if-e10000-1/1/4)# arp inspection trust vrf vrf2
    This example configures the VRF named "vrf2" as a trusted VRF on port 1/1/4.