Manageable Mosaic switch Installation and User Guide
Page 63 of 87
•
Status
field displays the port security status (disable, port forwarding, or port blocked).
When
disabled
appears in the
Status
field, this means that the MAC security is
disabled. When
port forwarding
or
port blocked
appears in the
Status
field, this
means that the MAC security is enabled and that specific port is either forwarding or
blocked in accordance to the MAC security algorithms.
NOTE:
Port Monitoring, MAC security and 802.1X cannot be active at the same time.
2. In the
Approved MAC
list select the MAC address to be designated as the
approved MAC address.
3. Open the
Mode
list and set the mode according to the following parameter
descriptions:
•
Disable
– MAC security is not enabled.
•
Low Security Level
– The port is open (forwards data) for all devices as long as
the approved MAC address exists on the port's look-up table. When the designated
device is disconnected and its MAC address is removed from the port table, the
port blocks data communication to all devices.
•
High Security Level
– Only the designated approved MAC address can use the
port (i.e., only the approved MAC address exists on the port’s look-up table). If the
port receives frames from another device (other addresses in the look-up table),
then the port blocks all data transmission, even for the approved address.
NOTE:
When a port is blocked through MAC Security it is detected as a major event and
an appropriate trap is sent to the authorized SNMP managers.
5.2.2
802.1X Port Based Network Access Security
5.2.2.1 General Description
Three components, illustrated in Figure 5-
5
, are required to create an access authentication scheme
based on 802.1X standards:
SUMMARY