Security Management
Page 4-15
To enable New Node detection:
1
From the Configuration Menu, type t to access the Security
Management Menu.
2
Type p to access the Port Security Configuration Menu, as
shown in Figure 4-5.
3
Type t to choose Toggle Port Security Trap.
4
Type 1 to toggle the new node trap (if it is not already
enabled).
Configuring Port Lock and Intruder Lock
The port intruder security measure allows you to create a port-trusted MAC
address that is the only station with full rights to direct traffic to the port.
Attempts to send traffic to the port from other stations are regarded as security
intrusions, and can be disallowed. The security measure may be enabled as a
port lock (security level 2) or an intruder lock (security level 3).
◆
Note: The three security levels are mutually exclusive; a port
can have either security level1, level2, or level 3, but never a
combination of security levels.
To configure security level 2 or 3, you must specify the port-trusted MAC
address. You can either specify the address directly, or direct the system to trust
the address of the first station that addresses the port. By trusting the first
station to address the port, you can configure port security before you know
which system will ultimately use that port.
When security level 2 (port lock) is enabled and an intruder attempts to direct
traffic to the port, the port is immediately disabled. The port is then re-enabled
only by clearing the security level by management.
When security level 3 (intruder lock) is enabled and an intruder attempts to
direct traffic to the port, the switch locks out the intruder’s MAC address; the
port will not accept any traffic from that station. The intruder’s address is then
re-enabled only by clearing the security level by management.
▲
Important! If you set security level 2 or 3, you should also
set the Intruder Trap. If you do not set this trap, you will
not receive notification that the port has been disabled. See
“Setting the Intruder Trap” on page 4-16.
By default, security levels 2 and 3 are both disabled.
Summary of Contents for IntraCore 6524
Page 8: ...Page vi...
Page 80: ...Configuration Page 3 52...
Page 122: ...Advanced Management Page 4 42...
Page 142: ...Web Browser Management Page 5 20...
Page 144: ...Page A 2...
Page 150: ...Page B 6...