55-14
Catalyst 4500 Series Switch, Cisco IOS Software Configuration Guide - Cisco IOS XE 3.9.xE and IOS 15.2(5)Ex
Chapter 55 Configuring Port Security
Configuring Port Security on PVLAN Ports
The following example shows how to configure rate limit for invalid source packets on Fast Ethernet
interface 5/1:
Switch#
configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Switch(config)#
interface fastethernet 5/1
Switch(config-if)#
switchport port-security limit rate invalid-source-mac none
Switch(config-if)#
end
Switch#
Example 8: Clearing Dynamic Secure MAC Addresses
The following example shows how to clear a dynamic secure MAC address:
Switch#
clear port-security dynamic address 0000.0001.0001
The following example shows how to clear all dynamic secure MAC addresses on Fast Ethernet interface
2/1:
Switch#
clear port-security dynamic interface fa2/1
The following example shows how to clear all dynamic secure MAC addresses in the system:
Switch#
clear port-security dynamic
Configuring Port Security on PVLAN Ports
You can configure port security on a private VLAN port to take advantage of private VLAN functionality
as well as to limit the number of MAC addresses.
Note
This section follows the same configuration model that was presented for access ports.
These sections describe how to configure trunk port security on host and promiscuous ports:
•
Configuring Port Security on an Isolated Private VLAN Host Port, page 55-14
•
Example of Port Security on an Isolated Private VLAN Host Port, page 55-16
•
Configuring Port Security on a Private VLAN Promiscuous Port, page 55-16
•
Example of Port Security on a Private VLAN Promiscuous Port, page 55-17
Configuring Port Security on an Isolated Private VLAN Host Port
illustrates a typical topology for port security implemented on private VLAN host ports. In
this topology, the PC connected through port a on the switch can communicate only with the router
connected using the promiscuous port on the switch. The PC connected through port a cannot
communicate with the PC connected through port b.
Содержание Catalyst 4500 Series
Страница 2: ......
Страница 4: ......
Страница 2086: ...Index IN 46 Software Configuration Guide Release IOS XE 3 9 0E and IOS 15 2 5 E ...