Traffic from trusted ports will be ignored when
      DoS protect counts the packets to the CPU. If we know that a machine connected to a certain
      port on the switch is a safe "trusted" machine, and we know that we will not get a DoS attack
      from that machine, the port where this machine is connected to can be configured as a trusted
      port, even though a large amount of traffic is going through this port.
    
        Configure the trusted ports list using the command:
        configure
          dos-protect trusted-ports [ports [ports | all] | add-ports [ports-to-add | all] | delete-ports [ports-to-delete | all]]