![NETGEAR FS728TS - ProSafe Smart Switch User Manual Download Page 42](http://html1.mh-extra.com/html/netgear/fs728ts-prosafe-smart-switch/fs728ts-prosafe-smart-switch_user-manual_1673274042.webp)
Port Security
Network security can be increased by limiting access on a specific port only to users with specific MAC addresses. The MAC addresses can be
dynamically learned or statically configured. Locked port security monitors both received and learned packets that are received on specific ports.
Access to the locked port is limited to users with specific MAC addresses. These addresses are either manually defined on the port, or learned on
that port up to the point when it is locked. When a packet is received on a locked port and the packet source MAC address is not tied to that port
(either it was learned on a different port, or it is unknown to the system), the protection mechanism is invoked. It provides the following options for
unauthorized packets arriving at a locked port:
•
Forwarded
•
Discarded with no trap
•
Discarded with a trap
•
Shuts down the port
Locked port security also enables storing a list of MAC addresses in the configuration file. The MAC address list can be restored after the device
has been reset. Disabled ports are activated from the
Port Security Page.
To define port security:
1. Click
Security > Traffic Control > Port Security
. The
Port Security Page
opens.
Figure 5 - 14: Port Security Page
The
Port Security Page
contains the following fields:
•
Interface
— Displays the port or LAG name.
•
Interface Status
— Indicates the host status.
•
Learning Mode
— Defines the locked port type. The Learning Mode field is enabled only if Locked is selected in the Set Port field. The
possible field values are:
Page 42