This article describes the case in which you need to configure ARP spoofing protection when clients are configured with static IP addresses.
On Huawei S5300 DAI feature is per-port based instead of Cisco-like per-vlan. This will greatly simplify implementation when the service is active.
In global configuration mode, enable dhcp-snooping and create a client binding:
dhcp enable
dhcp snooping enable
dhcp snooping enable vlan 2
user-bind static ip-address 10.10.10.100 mac-address b869-f472-5468 interface GigabitEthernet0/0/3 vlan 2
mac-address static b869-f472-5468 GigabitEthernet0/0/3 vlan 2
On inerface :
interface GigabitEthernet0/0/3
port link-type access
port default vlan 2
arp anti-attack check user-bind enable
dhcp snooping enable