General Security Measures
4-125
4
Command Usage
• If you enable port security, the switch stops learning new MAC addresses on
the specified port when it has reached a configured maximum number. Only
incoming traffic with source addresses already stored in the dynamic or static
address table will be accepted.
• Use the
port security
command to enable security on a port. Then use the
port security
action
command to set the response to a port security violation,
and the
port security max-mac-count
command to set the maximum
number of addresses allowed on a port.
• You can also manually add secure addresses with the
mac-address-table
static
command.
• A secure port has the following restrictions:
- Cannot be connected to a network interconnection device.
- Cannot be a trunk port.
• If a port is disabled due to a security violation, it must be manually re-enabled
using the
no
shutdown
command.
Example
The following example enables port security for port 5, and sets the response to a
security violation to issue a trap message:
Related Commands
shutdown (4-160)
mac-address-table static (4-193)
show mac-address-table (4-194)
Console(config)#interface ethernet 1/5
Console(config-if)#port security action trap
Summary of Contents for 8126PL2-F
Page 1: ...MANAGEMENT GUIDE ta TigerSwitchTM 10 100 1000 L2 Lite SMB PoE Gigabit Switch SMC8126PL2 F ...
Page 2: ......
Page 6: ...vi ...
Page 22: ...Contents xxii ...
Page 26: ...Tables xxvi ...
Page 48: ...Initial Configuration 2 10 2 ...
Page 117: ...User Authentication 3 69 3 Web Click Security AAA Summary Figure 3 43 AAA Accounting Summary ...
Page 590: ...Command Line Interface 4 302 4 ...
Page 604: ...Glossary Glossary 8 ...
Page 612: ...Index 8 Index ...
Page 613: ......
Page 614: ...149100000023A R01 SMC8126PL2 F ...