DGS-1210/ME Metro Ethernet Switch CLI Reference Guide
383
48
PORT SECURITY COMMANDS
The Port Security commands in the Command Line Interface (CLI) are listed (along with the appropriate
parameters) in the following table.
Command
Parameter
config port_security
[<portlist> | all] [admin_state [enable | disable] | max_learning_addr
<max_lock_no 0-64> | lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]
show port_security
{ports <portlist>}
delete
port_security_entry
[vlan <vlan_name 32> | vlanid <vlanid 1-4094>] mac_address <macaddr>
clear
port_security_entry
[all | port <portlist>]
Each command is listed in detail, as follows:
config port_security
Purpose
To configure port security settings.
Syntax
config port_security [<portlist> | all] [admin_state [enable |
disable] | max_learning_addr <max_lock_no 0-64> |
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]
Description
The
config port_security
command configures port security
settings for specific ports.
Parameters
<portlist>
– A port or range of ports to be configured.
all
– Configures port security for all ports on the Switch.
admin_state [enable | disable]
– Enables or disables port security for
the listed ports.
max_learning_addr <int 0-64>
- Specify the max learning address.
The range is 0 to 64.
1-64 Limits the number of MAC addresses dynamically listed in the
FDB for the ports.
lock_address_mode – Defines the TBD and contains the following
options:
•
Permenant – Learns up to the maximum number of dynamic
addresses allowed on the port. The learned addresses are
not aged out or relearned on other port for as long as the
port is locked.
•
DeleteOnReset – Deletes the current dynamic MAC
addresses associated with the port. Learn up to the
maximum addresses allowed on the port (this number is
also configurable). Aging is disabled; the addresses are
deleted on reset
•
DeleteOnTimeout – Deletes the current dynamic MAC
addresses associated with the port. The port learns up to