2
A
DDRESS
M
ANAGEMENT
C
ONFIGURATION
Introduction to
Address Management
You can easily configure the switch on which the Address Manage (AM) feature is
enabled to allow a user with the specified MAC address to gain network access
through the specified IP address in a small network, such as a campus network. This
facilitates the implementation of user management and accounting.
Configuring Address
Management
Address management configuration tasks include:
■
Configuring a port-based address management IP address pool
■
Binding the MAC address and IP address of a legal user to the specified port
Configuring a
Port-Based Address
Management IP Address
Pool
By setting an address management IP address pool on a port, you can allow a user
with the specified IP addresses to access the network. The Ethernet switch allows the
packets in the IP address pool whose IP addresses are the source IP addresses to pass
the port for layer 3 forwarding. The switch does not forward any packet from any IP
address not configured in the IP address pool.
When you are configuring an address management IP address pool on a port, if the IP
addresses in this IP address pool are those configured in the static ARP on another
port, the system will prompt you to delete the corresponding static ARP to ensure
that the binding takes effect.
You cannot configure static ARP for the IP address restricted by AM; otherwise, AM
fails.
Binding the MAC
Address and IP Address
of a Legal User to the
Specified Port
This configuration binds the specified MAC addresses and IP addresses, only allowing
the packets from legal MAC addresses and legal IP addresses to be forwarded by the
switch. None of the following combinations enables network access through the
switch:
■
Illegal MAC a illegal IP address
■
Legal MAC a illegal IP address
■
Illegal MAC a legal IP address
Table 30
Configure a port-based address management IP address pool
Operation
Command
Description
Enter system view
system-view
-
Enable address management
am enable
Required
The IP address pool configured on
each port to control layer 3
forwarding takes effect only after
address management is enabled.
Enter Ethernet port view
interface
interface-type
interface-number
-
Configure an address
management IP address pool
on a port
am ip-pool
{
address-list
}
Required
By default, the address
management IP address pool on
each port is null; that is, the switch
permits all packets to pass.
Содержание 5500 SI - Switch - Stackable
Страница 24: ...24 ABOUT THIS GUIDE...
Страница 30: ...30 CHAPTER 1 GETTING STARTED Figure 3 Setting up a New Connection Figure 4 Configuring the Port for Connection...
Страница 50: ...50 CHAPTER 1 GETTING STARTED...
Страница 54: ...54 CHAPTER 2 ADDRESS MANAGEMENT CONFIGURATION...
Страница 78: ...78 CHAPTER 3 PORT OPERATION...
Страница 88: ...88 CHAPTER 4 XRN CONFIGURATION...
Страница 122: ...122 CHAPTER 8 VLAN VPN CONFIGURATION...
Страница 216: ...216 CHAPTER 15 SSH TERMINAL SERVICES...
Страница 268: ...268 CHAPTER 16 IP ROUTING PROTOCOL OPERATION...
Страница 308: ...308 CHAPTER 17 NETWORK PROTOCOL OPERATION...
Страница 349: ...349...
Страница 350: ...350 CHAPTER 18 MULTICAST PROTOCOL...
Страница 522: ...522 CHAPTER 22 FILE SYSTEM MANAGEMENT...
Страница 584: ...584 CHAPTER 30 PASSWORD CONTROL CONFIGURATION OPERATIONS...
Страница 600: ...600 CHAPTER 31 MSDP CONFIGURATION...
Страница 614: ...614 CHAPTER 32 CLUSTERING...
Страница 670: ...670 CHAPTER C AUTHENTICATING THE SWITCH 5500 WITH CISCO SECURE ACS...