CPC H04L 61/5053 (2022.05) [H04L 61/5014 (2022.05); H04L 63/0236 (2013.01); H04L 63/101 (2013.01); H04L 2101/622 (2022.05)] | 17 Claims |
1. A method comprising:
performing, by a first provider edge (PE) device from a plurality of PE devices, dynamic host configuration protocol (DHCP) snooping of a first plurality of DHCP messages between a DHCP client and a DHCP server, wherein the DHCP snooping comprises:
receiving, by the first PE device, a DHCP offer message broadcasted by the DHCP server to the plurality of PE devices, wherein the DHCP offer message is directed to the DHCP client;
determining, by the first PE device, that the DHCP offer message corresponds to a DHCP discover message forwarded by the first PE device from the DHCP client to the DHCP server; and
sending, by the first PE device, the DHCP offer message to the DHCP client;
determining, based on the snooping of the first plurality of DHCP messages, that the DHCP client is secure;
sending, by the first PE device to at least one other PE device, a first route advertisement that includes an indication; and
configuring the at least one other PC device to validate network traffic associated with the DHCP client based on the indication.
|