
S e n d f e e d b a c k t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
1-4
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
OL-16597-01
Chapter 1 Configuring Port Security
Configuring Port Security
See the
“Committing the Changes” section on page 1-13
. All switches have port security activated with
auto-learning enabled.
Step 5
Wait until all switches and all hosts are automatically learned.
Step 6
Disable auto-learn on each VSAN.
See the
“Disabling Auto-Learning” section on page 1-8
Step 7
Issue a CFS commit to copy this configuration to all switches in the fabric.
See the
“Committing the Changes” section on page 1-13
. The auto-learned entries from every switch are
combined into a static active database that is distributed to all switches.
Step 8
Copy the active database to the configure database on each VSAN.
See the
“Copying the Port Security Database” section on page 1-17
Step 9
Issue a CFS commit to copy this configuration to all switches in the fabric.
See the
“Committing the Changes” section on page 1-13
. This ensures that the configure database is the
same on all switches in the fabric.
Step 10
Copy the running configuration to the startup configuration, using the fabric option.
This step saves the port security configure database to the startup configuration on all switches in the
fabric.
Configuring Port Security with Auto-Learning without CFS
To configure port security using auto-learning without CFS, perform this task:
Step 1
Enable port security.
See the
“Enabling Port Security” section on page 1-5
.
Step 2
Activate port security on each VSAN, which turns on auto-learning by default.
See the
“Activating Port Security” section on page 1-6
Step 3
Wait until all switches and all hosts are automatically learned.
Step 4
Disable auto-learn on each VSAN.
See the
“Disabling Auto-Learning” section on page 1-8
Step 5
Copy the active database to the configure database on each VSAN.
See the
“Copying the Port Security Database” section on page 1-17
Step 6
Copy the running configuration to the startup configuration, which saves the port security configuration
database to the startup configuration.
Step 7
Repeat
through
for all switches in the fabric.