Disabling Auto-Learning
You can disable auto-learning.
Procedure
Purpose
Command or Action
Enters global configuration mode.
configure terminal
Example:
switch# configure terminal
switch(config)#
Step 1
Disables auto-learning and stops the switch from
learning about new devices that access the switch.
no port-security auto-learn vsan vsan-id
Example:
switch(config)# no port-security
auto-learn vsan 23
Step 2
This command enforces the database contents based
on the devices learned up to this point.
Auto-Learning Device Authorization
The following table summarizes the authorized connection conditions for device requests.
Table 34: Authorized Auto-Learning Device Requests
Authorization
Requests Connection to
Device (pWWN, nWWN,
sWWN)
Condition
Permitted
A configured switch port
Configured with one or
more switch ports
1
Denied
Any other switch port
2
Permitted if auto-learning
enabled
A switch port that is not
configured
Not configured
3
Denied if auto-learning
disabled
4
Permitted
A switch port that allows
any device
Configured or not
configured
5
Permitted
Any port on the switch
Configured to log in to
any switch port
6
Denied
A port configured with
some other device
Not configured
7
Cisco Nexus 5500 Series NX-OS SAN Switching Configuration Guide, Release 7.x
OL-30895-01
253
Configuring Port Security
Auto-Learning