14-36
Configuring and Monitoring Port Security
Reading Intrusion Alerts and Resetting Alert Flags
■
The port comes up and will block traffic from unauthorized devices it
detects.
■
If the port detects another intruder, it will send another SNMP trap, but
will not become disabled again unless you first reset the port’s intrusion
flag.
This operation enables the port to continue passing traffic for authorized
devices while you take the time to locate and eliminate the intruder. Other-
wise, the presence of an intruder could cause the switch to repeatedly disable
the port.
CLI: Checking for Intrusions, Listing Intrusion Alerts,
and Resetting Alert Flags
The following commands display port status, including whether there are
intrusion alerts for any port(s), list the last 20 intrusions, and either reset the
alert flag on all ports or for a specific port for which an intrusion was detected.
(The record of the intrusion remains in the log. For more information, refer
to “Operating Notes for Port Security” on page 14-39.)
In the following example, executing
show interfaces brief
lists the switch’s port
status, which indicates an intrusion alert on port A1.
Syntax:
show interfaces brief
List intrusion alert status (and other port status informa-
tion)’.
show port-security intrusion-log
List intrusion log content.
clear intrusion-flags
Clear intrusion flags on all ports.
port-security [e] < port-number > clear-intrusion-flag
Clear the intrusion flag on one or more specific ports.
Summary of Contents for E3800 Series
Page 2: ......
Page 3: ...HP Networking E3800 Switches Access Security Guide September 2011 KA 15 03 ...
Page 30: ...xxviii ...
Page 86: ...2 36 Configuring Username and Password Security Password Recovery ...
Page 186: ...4 72 Web and MAC Authentication Client Status ...
Page 364: ...8 32 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Page 510: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Page 548: ...11 38 Configuring Advanced Threat Protection Using the Instrumentation Monitor ...
Page 572: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Page 730: ...20 Index ...
Page 731: ......