
222
Rockwell Automation Publication 1783-UM007I-EN-P - December 2017
Chapter 3
Configure Switch Features
Static Secure MAC ID
The other method of limiting MAC IDs is to configure statically one or more
MAC IDs for a port by defining them via port security with Device Manager.
These addresses become part of the saved configuration of the switch. This
method provides strong security. However, if you replace any devices that are
connected to the port, you must reconfigure the MAC IDs because the new
devices have different MAC IDs than the previous devices.
For Stratix 8000/8300 switches, you can configure the static secure method
only with the Logix Designer application. Configuration for this method is not
available with Device Manager.
Security Violations
It is a security violation when one of these situations occurs:
•
The maximum number of secure MAC IDs that have been configured
for a port are in the address table. A station whose MAC ID is not in the
address table attempts to access the interface.
•
An address that is learned or configured on one secure interface is seen
on another secure interface in the same VLAN.
When a violation occurs, the port goes into the Restrict mode. In this mode,
packets with unknown source addresses are dropped and you are notified that a
security violation has occurred. An SNMP trap is sent, a syslog message is
logged, and the violation counter increments.
Summary of Contents for armorstratix 5700
Page 10: ...10 Rockwell Automation Publication 1783 UM007I EN P December 2017 Table of Contents Notes ...
Page 12: ...12 Rockwell Automation Publication 1783 UM007I EN P December 2017 Preface Notes ...
Page 72: ...72 Rockwell Automation Publication 1783 UM007I EN P December 2017 Chapter 2 Get Started Notes ...
Page 396: ...396 Rockwell Automation Publication 1783 UM007I EN P December 2017 Appendix A DataTypes Notes ...
Page 457: ......