ip arp inspection vlan

Enables dynamic ARP inspection (DAI) on a VLAN or a range of VLANs.
Syntax
ip arp inspection vlan vlan-id [ to vlan-id … ]
no ip arp inspection vlan vlan-id [ to vlan-id … ]
Command Default

Dynamic ARP inspection is disabled by default.

Parameters
vlan-id
Specifies the VLAN number.
to vlan-id
Specifies a range of VLANs.
Modes

Global configuration mode

Usage Guidelines

All VLANs included in the range when using the to keyword must be valid VLANs. Otherwise an error will occur.

DAI can be configured on a maximum of 511 VLANs..

The no form of the command disables DAI on the VLAN.

Examples

The following example enables DAI on VLAN 2.

device# configure terminal
device(config)# ip arp inspection vlan 2

The following example enables DAI on VLANs 100 through 150, VLAN 160, and VLANs 170 through 200.

device# configure terminal
device(config)# ip arp inspection vlan 100 to 150 160 170 to 200
History
Release version Command history
08.0.80 The to keyword was added to enable Dynamic ARP Inspection on a range of VLANs by using a single command.
08.0.95 DAI can be configured on a maximum of 511 VLANs.