DES-1228/ME Layer 2 Metro Ethernet Switch CLI Reference Manual
28
7
P
ORT
S
ECURITY
C
OMMANDS
The Switch’s port security commands in the Command Line Interface (CLI) are listed (along with the appropriate parameters) in
the following table.
Command
Parameters
config port_security
ports
[ <auth_portlist>| all ] { admin_state [enable | disable] | max_learning_addr <max_lock_no
0-64> | lock_address_mode [DeleteOnTimeout | DeleteOnReset | Permanent]}(1)
delete port_security
entry
vlan_name <vlan_name 32> mac_address <macaddr> port <auth_port>
clear port_security_entry port <auth_portlist>
show port_security
{ports <auth_portlist>}
enable port_security
trap_log
disable port_security
trap_log
Each command is listed, in detail, in the following sections.
config port_security ports
Purpose
Used to configure port security settings.
Syntax
config port_security ports [ <auth_portlist>| all ] { admin_state [enable | disable] |
max_learning_addr <max_lock_no 0-64> | lock_address_mode [DeleteOnTimeout |
DeleteOnReset | Permanent]}(1)
Description
This command allows for the configuration of the port security feature. Only the ports
listed in the
<auth_portlist>
are affected.
Parameters
<auth_portlist>
−
Specifies a port or range of ports to be configured.
all
−
Configure port security for all ports on the Switch.
admin_state [enable | disable]
– Enable or disable port security for the listed ports.
max_learning_addr <max_lock_no 0-64>
−
Use this to limit the number of MAC addresses
dynamically listed in the FDB for the ports.
lock_address_mode [Permanent | DeleteOnTimout | DeleteOnReset]
– Indicates the
method of locking addresses. The user has three choices:
Permanent
– The locked addresses will not age out.
DeleteOnTimeout
– The locked addresses will age out after the aging timer
expires (Aging Time is set using the FDB command).
DeleteOnReset
– The locked addresses will not age out until the Switch has been
reset.
Restrictions
Only Administrator-level users can issue this command.
Example usage:
To configure the port security: