Mypower
S4100
Troubleshooting
Maipu Confidential & Proprietary Information
Page
42
of
124
Possible Reasons
Judging Methods and Solutions
The port security is not
enabled on the port.
Use the show run command to view whether the port security
is enabled on the port. If not, use the port-security enable
command to enable it.
The client does not send the
arp trigger request to the
port.
Delete the arp cache entries via the client command line, such
as arp –d. Re-send one arp request to the destination address.
The MAX rule of the port
security is set.
The port security has three kinds of rules, that is, Ip rule, MAC
rule and MAX rule. For example, it is set to permit two MAC
addresses to be connected to the network on the port
according to the MAC rule. Meanwhile, set the MAX rule as 2.
Do not reach the upper threshold of MAX rule 2, so another 2
users in the port can be permitted to access the network.
Fault 2: After enabling the MAC rule of the port security, the MAC address
cannot be aged.
Possible Reasons
Judging Methods and Solutions
Maybe the aging time of the
port security is not modified.
By default, only the MAC address that is learned by the MAX
rule can be aged. The default aging time is 1. View whether is
port-security aging time 0 configured on the port. If yes, it
means not to age the learned MAC address. The solution is:
Use the port-security aging time
<0-1440>
command to
modify the aging time to any non-0 value.
Fault 3: The MAC-based or IP-based address that enables the port
security is aged.
Possible Reasons
Judging Methods and Solutions
The configuration is wrong.
By default, the port security that enables the IP or MAC rule
does not age. The system ages the MAC address only when
port-security aging static is configured and port-security
aging time
<0-1440>
is configured as non-0.