S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m
19-14
Cisco MDS 9000 Family Troubleshooting Guide, Release 3.x
OL-9285-05
Chapter 19 Troubleshooting FC-SP, Port Security, and Fabric Binding
Port Security Issues
Merge Fails
Symptom
Merge fails.
Configuring Port Security with Autolearn Using Fabric Manager
To configure port security with autolearn using Fabric Manager, follow these steps:
Step 1
Choose
Fabric
xx
> VSAN
xx
> Port Security
and select the
Control
tab.
Step 2
Select
enable
from the Command drop-down menu and click
Apply Changes
.
Step 3
Select the
CFS
tab and select
enable
from the Admin drop-down menu and select
enable
from the
Global drop-down menu to enable CFS distribution.
Step 4
Select the
CFS
tab and select
commit
from the ConfigAction drop-down menu to distribute these
changes to all switches in the fabric.
Step 5
Choose
Fabric
xx
> VSAN
xx
> Port Security
, select the
Actions
tab, and select
activate
from the
Actions drop-down menu.
Step 6
Check the
AutoLearn
check box and click
Apply Changes
to enable autolearn.
Step 7
Select the
CFS
tab and select
commit
from the ConfigAction drop-down menu to distribute these
changes to all switches in the fabric.
Step 8
Uncheck the
AutoLearn
check box and click
Apply Changes
to disable autolearn after all entries are
learned.
Step 9
Select the
CFS
tab and select
commit
from the ConfigAction drop-down menu to distribute these
changes to all switches in the fabric.
Step 10
Check the
CopyActive to Config
check box and click
Apply Changes
to copy the active database to the
configure database. This ensures that no learned entries are lost.
Step 11
Select the
CFS
tab and select
commit
from the ConfigAction drop-down menu to distribute these
changes to all switches in the fabric.
Step 12
Copy the running configuration to the startup configuration, using the fabric option. This saves the port
security configure database to the startup configuration on all switches in the fabric.
Table 19-8
Merge Fails
Symptom
Possible Cause
Solution
Merge fails
Activation or autolearn configuration in
the separate fabrics do not match.
Disable autolearn. See the
“Disabling Autolearn Using
Fabric Manager” section on page 19-13
or the
“Disabling
Autolearn Using the CLI” section on page 19-13
.
Combined port security database
contains more than 2047 entries.
Delete the port security database in one of the fabrics and
then relearn the entries after the fabrics merge. See the
“Configuring Port Security with Autolearn Using Fabric
Manager” section on page 19-14
or the
“Configuring Port
Security with Autolearn Using the CLI” section on
page 19-15
.