9-15
Configuring and Monitoring Port Security
Port Security Command Options and Operation
N o t e
The message
Inconsistent value
appears if the new MAC address exceeds the
current Address Limit or specifies a device that is already on the list. If you
change a port from static to continuous learn mode, the port retains in memory
any authorized addresses it had while in static mode. If you subsequently
attempt to convert the port back to static mode with the same authorized
address(es), the
Inconsistent value
message appears because the port
already has the address(es) in its “Authorized” list.
If you are adding a device (MAC address) to a port on which the Authorized
Addresses list is already full (as controlled by the port’s current Address Limit
setting), then you must increase the Address Limit in order to add the device,
even if you want to replace one device with another. Using the CLI, you can
simultaneously increase the limit and add the MAC address with a single
command. For example, suppose port A1 allows one authorized device and
already has a device listed:
Figure 9-6. Example of Port Security on Port A1 with an Address Limit of “1”
To add a second authorized device to port A1, execute a
port-security
command
for port A1 that raises the address limit to 2 and specifies the additional
device’s MAC address. For example:
ProCurve(config)# port-security a1 mac-address 0c0090-
456456 address-limit 2
Removing a Device From the “Authorized” List for a Port Configured
for Learn-Mode Static.
This command option removes unwanted devices
(MAC addresses) from the Authorized Addresses list. (An Authorized Address
list is available for each port for which Learn Mode is currently set to “Static”.
See the “MAC Address” entry in the table on 9-8.)
Содержание ProCurve 2510-24
Страница 1: ...Access Security Guide 2510 www procurve com ProCurve Switches Q 11 XX 2510 24 U 11 XX 2510 48 ...
Страница 2: ......
Страница 3: ...ProCurve Series 2510 Switches Access Security Guide July 2008 ...
Страница 26: ...1 10 Getting Started Need Only a Quick Start ...
Страница 104: ...4 30 TACACS Authentication Configuring TACACS on the Switch ...
Страница 144: ...5 40 RADIUS Authentication Authorization and Accounting Messages Related to RADIUS Operation ...
Страница 174: ...6 30 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Страница 196: ...7 22 Configuring Secure Socket Layer SSL Common Errors in SSL Setup ...
Страница 294: ...9 40 Configuring and Monitoring Port Security Configuring Protected Ports ...
Страница 308: ...10 14 Using Authorized IP Managers Operating Notes ...
Страница 316: ...8 Index ...
Страница 317: ......