Configuring and Monitoring Port Security
Overview
Overview
Feature
Default
Menu
CLI
Web
Displaying Current Port Security
n/a
—
Configuring Port Security
disabled
—
Retention of Static Addresses
n/a
—
n/a
MAC Lockdown
disabled
—
MAC Lockout
disabled
—
Intrusion Alerts and Alert Flags
n/a
This feature enables you to configure each
switch port with a unique list of the MAC addresses of devices that are
authorized to access the network through that port. This enables individual
ports to detect, prevent, and log attempts by unauthorized devices to commu
nicate through the switch.
N o t e
This feature does not prevent intruders from receiving broadcast and multi
cast traffic. Also, Port Security and MAC Lockdown are mutually exclusive on
a switch. If one is enabled, then the other cannot be used.
MAC Lockdown (Page 13-22).
This feature, also known as “Static
Addressing”, is used to prevent station movement and MAC address “hijack
ing” by allowing a given MAC address to use only an assigned port on the
switch. MAC Lockdown also restricts the client device to a specific VLAN.
(See also the
Note
, above.)
MAC Lockout (Page 13-30).
This feature enables you to block a specific
MAC address so that the switch drops all traffic to or from the specified
address.
13-3
Summary of Contents for PROCURVE 2910AL
Page 1: ...Access Security Guide ProCurve Switches W 14 03 2910al www procurve com ...
Page 2: ......
Page 3: ...HP ProCurve 2910al Switch February 2009 W 14 03 Access Security Guide ...
Page 84: ...Configuring Username and Password Security Front Panel Security 2 36 ...
Page 156: ...TACACS Authentication Operating Notes 4 30 ...
Page 288: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup 8 22 ...
Page 416: ...Configuring Advanced Threat Protection Using the Instrumentation Monitor 10 28 ...
Page 572: ...Using Authorized IP Managers Operating Notes 14 14 ...
Page 592: ...12 Index ...
Page 593: ......