272
ExtremeWare 7.7 Command Reference Guide
Commands for Configuring Slots and Ports on a Switch
•
EDP traffic
Traffic from the permanent MAC and any other non-blackholed MACs will still flow from the virtual
port.
If you configure a MAC address limit on VLANS that have ESRP enabled, you should add an
additional back-to-back link (that has no MAC address limit on these ports) between the ESRP-enabled
switches. Doing so prevents ESRP PDU from being dropped due to MAC address limit settings.
Port lockdown.
The port lockdown feature allows you to prevent any additional learning on the
virtual port, keeping existing learned entries intact. This is equivalent to making the
dynamically-learned entries permanent static, and setting the learning limit to zero. All new source
MAC addresses are blackholed.
Locked entries do not get aged, but can be deleted like any other permanent FDB entries. The maximum
number of permanent lockdown entries is 1024. Any FDB entries above will be flushed and blackholed
during lockdown.
For ports that have lockdown in effect, the following traffic will still flow to the port:
•
Packets destined for the permanent MAC and other non-blackholed MACs
•
Broadcast traffic
•
EDP traffic
Traffic from the permanent MAC will still flow from the virtual port.
Once the port is locked down, all the entries become permanent and will be saved across reboot. When
you remove the lockdown using the unlock-learning option, the learning-limit is reset to unlimited, and
all associated entries in the FDB are flushed.
To verify the MAC security configuration for the specified VLAN or ports, use the following
commands:
show vlan <vlan name> security
show ports <portlist> info detail
Example
The following command limits the number of MAC addresses that can be learned on ports 1, 2, 3, and 6
in a VLAN named
accounting
, to 128 addresses:
configure ports 1, 2, 3, 6 vlan accounting learning-limit 128
The following command locks ports 4 and 5 of VLAN
accounting
, converting any FDB entries to static
entries, and prevents any additional address learning on these ports:
configure ports 4,5 vlan accounting lock-learning
The following command removes the learning limit from the specified ports:
configure ports 1, 2, vlan accounting
unlimited-learning
The following command unlocks the FDB entries for the specified ports:
configure ports 4,5 vlan accounting unlock-learning
Содержание ExtremeWare 7.7
Страница 60: ...60 ExtremeWare 7 7 Command Reference Guide Contents ...
Страница 72: ...72 ExtremeWare 7 7 Command Reference Guide Command Reference Overview ...
Страница 404: ...404 ExtremeWare 7 7 Command Reference Guide VLAN Commands ...
Страница 472: ...472 ExtremeWare 7 7 Command Reference Guide QoS Commands ...
Страница 491: ...show nat ExtremeWare 7 7 Command Reference Guide 491 Platform Availability This command is available on all platforms ...
Страница 492: ...492 ExtremeWare 7 7 Command Reference Guide NAT Commands ...
Страница 890: ...890 ExtremeWare 7 7 Command Reference Guide Security Commands ...
Страница 1043: ...enable ssh2 ExtremeWare 7 7 Command Reference Guide 1043 Platform Availability This command is available on all platforms ...
Страница 1066: ...1066 ExtremeWare 7 7 Command Reference Guide Security Commands Platform Availability This command is available on all platforms ...
Страница 1076: ...1076 ExtremeWare 7 7 Command Reference Guide Security Commands Platform Availability This command is available on all platforms ...
Страница 1130: ...1130 ExtremeWare 7 7 Command Reference Guide Security Commands ...
Страница 1164: ...1164 ExtremeWare 7 7 Command Reference Guide Configuration and Image Commands ...
Страница 1436: ...1436 ExtremeWare 7 7 Command Reference Guide Wireless Commands ...
Страница 1481: ...show eaps ExtremeWare 7 7 Command Reference Guide 1481 Platform Availability This command is available on all platforms ...
Страница 1484: ...1484 ExtremeWare 7 7 Command Reference Guide EAPS Commands Platform Availability This command is available on all platforms ...
Страница 1490: ...1490 ExtremeWare 7 7 Command Reference Guide EAPS Commands ...
Страница 1538: ...1538 ExtremeWare 7 7 Command Reference Guide ESRP Commands Platform Availability This command is available on all platforms ...
Страница 1576: ...1576 ExtremeWare 7 7 Command Reference Guide ESRP Commands ...
Страница 1614: ...1614 ExtremeWare 7 7 Command Reference Guide STP Commands Platform Availability This command is available on all platforms ...
Страница 1621: ...enable stpd ports ExtremeWare 7 7 Command Reference Guide 1621 Platform Availability This command is available on all platforms ...
Страница 1774: ...1774 ExtremeWare 7 7 Command Reference Guide IP Unicast Commands ...
Страница 1824: ...1824 ExtremeWare 7 7 Command Reference Guide IGP Commands Platform Availability This command is available on all platforms ...
Страница 1884: ...1884 ExtremeWare 7 7 Command Reference Guide IGP Commands Platform Availability This command is available on all platforms ...
Страница 1914: ...1914 ExtremeWare 7 7 Command Reference Guide IGP Commands ...
Страница 2000: ...2000 ExtremeWare 7 7 Command Reference Guide BGP Commands i Series Switches Only ...
Страница 2140: ...2140 ExtremeWare 7 7 Command Reference Guide IPX Commands i Series Platforms Only ...
Страница 2156: ...2156 ExtremeWare 7 7 Command Reference Guide ARM Commands BlackDiamond Switch Only ...
Страница 2168: ...2168 ExtremeWare 7 7 Command Reference Guide Remote Connect Commands ...
Страница 2180: ...2180 ExtremeWare 7 7 Command Reference Guide ATM Commands BlackDiamond 6800 Series Platforms Only ...
Страница 2236: ...2236 ExtremeWare 7 7 Command Reference Guide T1 E1 and T3 WAN Commands Alpine 3800 Series Platforms ...
Страница 2346: ...2346 ExtremeWare 7 7 Command Reference Guide PoS Commands BlackDiamond Switch Only ...
Страница 2410: ...2410 ExtremeWare 7 7 Command Reference Guide Power Over Ethernet Commands Summit 300 and 400 24p Switches and Alpine PoE Module ...
Страница 2446: ...2446 ExtremeWare 7 7 Command Reference Guide LLDP Commands ...
Страница 2496: ...2496 ExtremeWare 7 7 Command Reference Guide H VPLS Commands BlackDiamond Switch Only ...
Страница 2620: ...2620 ExtremeWare 7 7 Command Reference Guide Index of Commands ...