Raisecom
ISCOM2600G-HI (A) Series Configuration Guide
10 Security
Raisecom Proprietary and Confidential
Copyright © Raisecom Technology Co., Ltd.
405
Function
Default value
Aging type of dynamic secure MAC address
Absolute
Restoration time of port security MAC
Disable, namely, no restoration
Dynamic secure MAC sticky learning
Disable
Port secure MAC Trap
Disable
Port secure MAC violation processing mode
Protect
Maximum number of port security MAC
1
10.2.4 Configuring basic functions of port security MAC
We do not recommend enabling port security MAC on member interfaces of the
LAG.
We do not recommend using the MAC address management function to configure
static MAC addresses when port security MAC is enabled.
When the 802.1x interface adopts a MAC address-based authentication mode,
port security MAC and 802.1x are mutually exclusive. We do not recommend co-
configuring them concurrently.
Port security MAC and interface-/interface VLAN-based MAC number limit are
mutually exclusive, which cannot be configured concurrently.
Configure basic functions of port security MAC for the ISCOM2600G-HI series switch as
below.
Step
Command
Description
1
Raisecom#config
Enter global configuration mode.
2
Raisecom(config)#interface
interface-type interface-number
Enter physical layer interface
configuration mode.
3
Raisecom(config-
gigaethernet1/1/port)#switchport
port-security
Enable port security MAC.
4
Raisecom(config-
gigaethernet1/1/port)#switchport
port-security maximum
maximum
(Optional) configure the
maximum number of secure
MAC addresses.
5
Raisecom(config-
gigaethernet1/1/port)#switchport
port-security violation { protect |
restrict | shutdown }
(Optional) configure secure
MAC violation mode.
6
Raisecom(config-
gigaethernet1/1/port)#no port-
security shutdown
Raisecom(config-
gigaethernet1/1/port)#exit
(Optional) re-enable the
interface which is shut down due
to violating port security MAC.