DES-3028 DES-3028P DES-3028G DES-3052 DES-3052P Layer 2 Fast Ethernet Switch CLI Reference Manual
29
7
P
ORT
S
ECURITY
C
OMMANDS
The Switch’s port security commands in the Command Line Interface (CLI) are listed (along with the appropriate parameters) in
the following table.
Command Parameters
config port_security ports
[<auth_portlist> | all] {admin_state [enable| disable] |
max_learning_addr <max_lock_no 0-16> | lock_address_mode
[DeleteOnTimeout | DeleteOnReset | Permanent]}
delete port_security entry
vlan_name <vlan_name 32> mac_address <macaddr> port
<auth_port>
clear port_security_entry
port <auth_portlist>
show port_security
{ports <auth_portlist>}
enable port_security trap_log
disable port_security trap_log
Each command is listed, in detail, in the following sections.
config port_security ports
Purpose
Used to configure port security settings.
Syntax
config port_security ports [<auth_portlist> | all ] {admin_state
[enable| disable] | max_learning_addr <max_lock_no 0-16> |
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]}
Description
This command allows for the configuration of the port security feature.
Only the ports listed in the
<auth_portlist>
are affected.
Parameters
<auth_portlist>
Specifies a port or range of ports to be configured.
all
Configure port security for all ports on the Switch.
admin_state [enable | disable]
– Enable or disable port security for the
listed ports.
max_learning_addr <max_lock_no 0-16>
Use this to limit the number of
MAC addresses dynamically listed in the FDB for the ports.
lock_address_mode [Permanent | DeleteOnTimout | DeleteOnReset]
–
Indicates the method of locking addresses. The user has three choices:
Permanent
– The locked addresses will not age out.
DeleteOnTimeout
– The locked addresses will age out after the
aging timer expires (Aging Time is set using the FDB command).
DeleteOnReset
– The locked addresses will not age out until the
Switch has been reset.
Restrictions
Only Administrator-level users can issue this command.
Example usage:
To configure the port security: