Configuring and Monitoring Port Security
Port Security
Syntax:
port-security
(Continued)
mac-address [<
mac-addr
>] [<
mac-addr
>] . . . [<
mac-addr
>]
Available for
learn-mode
with the,
static
,
configured
, or
limited-continuous
option. Allows up to eight authorized
devices (MAC addresses) per port, depending on the value
specified in the
address-limit
parameter. The
mac-address
limited
mode allows up to 32 authorized MAC addresses
per port.
If you use
mac-address
with
static
, but enter fewer devices
than you specified in the
address-limit
field, the port
accepts not only your specified devices, but also as many
other devices as it takes to reach the device limit. For
example, if you specify four devices, but enter only two
MAC addresses, the port will accept the first two non-
specified devices it detects, along with the two specifically
authorized devices. Learned addresses that become
authorized do
not
age-out. See also “Retention of Static
Addresses” on page 11-18.
action < none | send-alarm | send-disable >
Specifies whether an SNMP trap is sent to a network
management station when Learn Mode is set to
static
and
the port detects an unauthorized device, or when Learn
Mode is set to continuous and there is an address change
on a port.
none
: Prevents an SNMP trap from being sent.
none
is the
default value.
send-alarm
: Sends an intrusion alarm. Causes the switch
to send an SNMP trap to a network management station.
send-disable
: Sends alarm and disables the port. Available
only in the
static
,
port-access
,
configured
, or
limited learn
modes
. Causes the switch to send an SNMP trap to a
network management station and disable the port. If you
subsequently re-enable the port without clearing the port’s
intrusion flag, the port will block further intruders, but
the switch will not disable the port again until you reset
the intrusion flag. See the
Note
on 11-36.
For information on configuring the switch for SNMP
management, refer to the Management and Configuration
Guide for your switch.
—Continued—
11-16
Summary of Contents for J8697A
Page 1: ...6200yl Access Security Guide 5400zl 3500yl ProCurve Switches K 11 XX www procurve com ...
Page 2: ......
Page 22: ...Product Documentation Feature Index xx ...
Page 55: ...Configuring Username and Password Security Front Panel Security 2 21 ...
Page 56: ...Configuring Username and Password Security Front Panel Security 2 22 ...
Page 58: ...Virus Throttling Contents Operating Notes 3 30 Connection Rate Log and Trap Messages 3 31 3 2 ...
Page 88: ...Virus Throttling Connection Rate Log and Trap Messages This page is intentionally unused 3 32 ...
Page 118: ...Web and MAC Authentication Client Status This page intentionally unused 4 30 ...
Page 356: ...Configuring and Monitoring Port Security Operating Notes for Port Security 11 44 ...
Page 370: ...Using Authorized IP Managers Operating Notes This page is intentionally unused 12 14 ...
Page 388: ...10 Index ...
Page 389: ......