• 7x24 hours service hot line: +86 755 86725911
How to prevent IP address conflict resulted from static IP of client side
Updated Date:2015-03-26
Shared to:
The client side will use internet method with static IP and adopt static IP+MAC address binding. Only the user in IP-MAC list can be permitted to normally use network. To some extent, the network’s security is guaranteed. But this often will bring some tedious things. For instance, a batch of new machine is needed to add several pieces of IP-MAC binding information at background of network equipment every time. And when some employee is assigned to another client side, it is required to ask webmaster to modify the MAC address in the list, which brings extra work load for the management. If only using the internet method with static IP address and allocating different access authority for every IP address, the network problem with IP address conflict will appear when some people modify the IP address of client side.
Consequently, the networking of some clients is required to own the function prohibiting the use of static IP at the client side. Meanwhile, the authentication method with DHCP+ account also is required to facilitate the maintenance and management for entire network.
Similarly, in most of wireless network deployment, wireless client adopts DHCP method to obtain IP address, gateway and DNS etc. Consequently, in order to avoid the possible problem of IP conflict resulted from manual configuration of static IP address,Sundray Technologies provides the function prohibiting from allocating the static IP address.
Sundray Technologies supports the function prohibiting the client side to use static IP based on VLAN, which can implement prohibit in all VLAN or designate VLAN. The additional benefit for adopting this function is to prevent wireless client from ARP spoofing attack.
The realization process of this function is as follows:
1.     The system will continuously intercept the data package of DHCP allocation process at wireless client. Meanwhile, it will obtain MAC address and the allocated IP address at wireless client from DHCP message to establish the effective relational data base corresponding with IP and MAC accordingly.
2.     Detect the ARP data package sent from wireless client, check legality of correspondence between IP and MAC address and abandon the illegal data package.