221User validity check and ARP packet validity checkconfiguration exampleNetwork requirementsAs shown in Figure 70, configure Switch B to perform ARP packet validity check and user validity checkbased on static IP source guard binding entries and DHCP snooping entries for connected hosts.Figure 70 Network diagramConfiguration procedure1. Add all the interfaces on Switch B to VLAN 10, and configure the IP address of VLAN-interface 10on Switch A. (Details not shown.)2. Configure the DHCP server on Switch A, and configure DHCP address pool 0. system-view[SwitchA] dhcp enable[SwitchA] dhcp server ip-pool 0[SwitchA-dhcp-pool-0] network 10.1.1.0 mask 255.255.255.03. Configure Host A (DHCP client) and Host B. (Details not shown.)4. Configure Switch B:# Enable DHCP snooping. system-view[SwitchB] dhcp snooping enable[SwitchB] interface ten-gigabitethernet 1/0/3[SwitchB-Ten-GigabitEthernet1/0/3] dhcp snooping trust[SwitchB-Ten-GigabitEthernet1/0/3] quit[SwitchB] interface ten-gigabitethernet 1/0/1[SwitchB-Ten-GigabitEthernet1/0/1] dhcp snooping binding record[SwitchB-Ten-GigabitEthernet1/0/1] quit# Enable ARP detection for VLAN 10.[SwitchB] vlan 10Switch ASwitch BHost A Host BXGE1/0/3Vlan-int1010.1.1.1/24GatewayDHCP serverXGE1/0/1XGE1/0/3XGE1/0/2DHCP clientVLAN 10DHCP snooping10.1.1.60001-0203-0607