By configuring the function described in this chapter, you can have an alarm generated when a specified number of Dynamic Host Configuration Protocol (DHCP) packets with incorrect client hardware address (CHADDR) fields are discarded.
After CHADDR field check is enabled, the device checks whether the media access control (MAC) address in the CHADDR field of a received DHCP packet matches that in the frame header of the packet. If they match, the device considers the packet valid and forwards it. If they do not match, the device considers the packet an attack packet and discards it. The device generates an alarm when the number of discarded DHCP packets with incorrect CHADDR fields reaches the predetermined threshold.
Configure the alarm function for discarded DHCP packets with incorrect CHADDR fields in a VLAN, BD, or interface view.