164
1.877.877.2269
BLACKBOX.COM
NEED HELP?
LEAVE THE TECH TO US
LIVE 24/7
TECHNICAL
SUPPORT
1.877.877.2269
CHAPTER 10: SECURITY
10.5.2 STATUS
This section shows the Port Security status. Port Security is a module with no direct configuration. Configuration comes indirectly
from other modules— the user modules. When a user module has enabled port security on a port, the port is set-up for software-
based learning. In this mode, frames from unknown MAC addresses are passed on to the port security module, which in turn asks
all user modules whether to allow this new MAC address to forward or block it. For a MAC address to be set in the forwarding state,
all enabled user modules must unanimously agree on allowing the MAC address to forward. If only one chooses to block it, it will be
blocked until that user module decides otherwise. The status page is divided into two sections—one with a legend of user modules
and one with the actual port status.
WEB INTERFACE
To display a Port Security Status in the web interface:
1. Click Security, Port Security and status.
2. Check “Auto-refresh.”
3. Click “Refresh” to refresh the port detailed statistics.
4. Click the port number to see the status for this particular port.
FIGURE 10-16. PORT SECURITY STATUS
PARAMETER DESCRIPTION
Port: The port number for which the status applies. Click the port number to see the status for this particular port.
Violation Mode: Shows the configured Violation Mode of the port. It can take one of four values:
- Disabled: Port Security is not administratively enabled on this port.
- Protect: Port Security is administratively enabled in Protect mode.
- Restrict: Port Security is administratively enabled in Restrict mode.
- Shutdown: Port Security is administratively enabled in Shutdown mode.
State: Shows the current state of the port. It can be one of four values:
- Disabled: No user modules are currently using the Port Security service.
- Ready: The Port Security service is in use by at least one user module, and is awaiting frames from unknown MAC addresses to
arrive.
- Limit Reached: The Port Security service is enabled by at least the Limit Control user module, and that module has indicated that
the limit is reached and no more MAC addresses should be taken in.