Method used to configure the check of a source IP address on USG firewalls

The check of a source IP address indicates that an interface checks the source IP address upon receiving an IP packet. If the source IP address of the packet is not in the network segment of the interface, the interface discards the packet; if the source IP address of the packet is in the network segment of the interface, the interface can forward the packet. The IP masquerading is effectively prevented by means of the check of a source IP address.

To configure the check of a source IP address, run the ip verify source-address command in the interface view. By default, the interface does not verify the source address of a received packet.

Scroll to top