224
Mac-auth-logoff trap : Disabled
OUI value list :
Index : 1 Value : 123401
Ten-GigabitEthernet1/0/1 is link-up
Port mode : autoLearn
NeedToKnow mode : Disabled
Intrusion protection mode : DisablePortTemporarily
Security MAC address attribute
Learning mode : Sticky
Aging type : Periodical
Max secure MAC addresses : 64
Current secure MAC addresses : 0
Authorization : Permitted
NAS-ID profile : Not configured
The port allows for MAC address learning, and you can view the number of learned MAC addresses
in the
Current secure MAC addresses
field.
# Display additional information about the learned MAC addresses.
[Device] interface ten-gigabitethernet 1/0/1
[Device-Ten-GigabitEthernet1/0/1] display this
#
interface Ten-GigabitEthernet1/0/1
port-security max-mac-count 64
port-security port-mode autolearn
port-security mac-address security sticky 0002-0000-0015 vlan 1
port-security mac-address security sticky 0002-0000-0014 vlan 1
port-security mac-address security sticky 0002-0000-0013 vlan 1
port-security mac-address security sticky 0002-0000-0012 vlan 1
port-security mac-address security sticky 0002-0000-0011 vlan 1
#
[Device-Ten-GigabitEthernet1/0/1] quit
# Verify that the port security mode changes to
secure
after the number of MAC addresses learned
by the port reaches 64.
[Device] display port-security interface ten-gigabitethernet 1/0/1
# Verify that the port will be disabled for 30 seconds after it receives a frame with an unknown MAC
address. (Details not shown.)
# After the port is re-enabled, delete several secure MAC addresses.
[Device] undo port-security mac-address security sticky 0002-0000-0015 vlan 1
[Device] undo port-security mac-address security sticky 0002-0000-0014 vlan 1
…
# Verify that the port security mode of the port changes to
autoLearn
, and the port can learn MAC
addresses again. (Details not shown.)
Содержание FlexFabric 5940 SERIES
Страница 251: ...238 ...