DES-30XX Layer 2 Switch CLI Reference Manual
123
21
P
ORT
S
ECURITY
C
OMMANDS
The port security commands in the Command Line Interface (CLI) are listed (along with the appropriate parameters) in the
following table.
Command Parameters
config port_security ports
[<portlist> | all ] {admin_state [enable | disable] |
max_learning_addr <max_lock_no 0-10> |
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]}
show port_security
{ports <portlist>}
delete port_security_entry
vlan_name
<vlan_name 32> mac_address <macaddr> port <port>
clear port_security_entry port
<portlist>
enable port_security trap_log
disable port_security trap_log
Each command is listed, in detail, in the following sections.
NOTE:
The uplink module ports (DES-3010F/G ports 9-10, DES-3018 ports 17-
18, DES-3026 ports 25-26) do not support the port security function.
config port_security ports
Purpose
Used to configure port security settings.
Syntax
config port_security ports [<portlist> | all ] {admin_state
[enable | disable] | max_learning_addr <max_lock_no 0-10> |
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]}
Description
This command allows for the configuration of the port security
feature. Only the ports listed in the
<portlist>
are effected.
Parameters
ports <portlist>
−
Specifies a port or range of ports to be
configured for port security.
all
−
Configure port security for all ports on the Switch.
admin_state [enable | disable]
– Enable or disable port security for
the listed ports.
max_learning_addr <max_lock_no 0-10>
- Use this to limit the
number of MAC addresses dynamically listed in the FDB for the
ports.
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]
– Indicates the method of locking addresses. The
user has three choices:
Permanent
– The locked addresses will not age out after
the aging timer expires.
DeleteOnTimeout
– The locked addresses will age out
after the aging timer expires.