5000 Series Layer 2/3 Managed Data Center Switch CLI Reference Guide
520
Command Mode
•
Global Config
•
Interface Config
Example
The following is a command example.
(Routing)(ConFig)#port-security mac-address sticky
(Routing)(Interface 0/1)#port-security mac-address sticky
00:00:00:00:00:01 2
5-514 mac-address-table limit
This command enables VLAN port security. VLAN MAC locking allows you to secure the network by
locking down allowable MAC addresses on a given VLAN. Packets with a matching source MAC address
can be forwarded normally. All other packets will be discarded. VLAN MAC locking will lock the dynamic
MAC entries.
If VLAN and port MAC locking are enabled, VLAN MAC locking will be given precedence over port MAC
locking.
Use the
no
command to disable VLAN port security on the specified VLAN.
mac-address-table limit [action shutdown] [notification trap] [maximum-num] [vlan vlan-id]
no mac-address-table limit [action shutdown] [notification trap] [maximum-num] [vlan vlan-id]
Parameters
action shutdown
(Optional) After the MAC limit has been reached, the action will shut
down the ports participating in the VLAN.
notification trap
(Optional) Enables snmp-server enable traps violation on the ports
participating in the VLAN. After the MAC limit has been reached, log
message will be generated with the violation MAC address details.
maximum-num
(Optional) MAC limit to be configured.
vlan vlan-id
(Optional) VLAN on which the MAC limit is to be applied.
Default
The default is Disabled.
Command Mode
Global Config
Example
The following is a command example.
(Routing)(Config)#mac-address-table limit 3 vlan 10