Management Guide
CLI
TigerAccess™ EE
SMC7824M/VSW
207
If MAC that already counted disappears before passing 1 second and starts learning
again, it is not counted. In case the same MAC is detected on the other port also, it is not
counted again. For example, if MAC that was learned on port 1 is detected on port 2, it is
supposed that MAC moved to the port 2. So, it is deleted from the port 1 and learned on
the port 2 but it is not counted.
7.9 Port
Security
You can use the port security feature to restrict input to an interface by limiting and identi-
fying MAC addresses of the PCs that are allowed to access the port. When you assign
secure MAC addresses to a secure port, the port does not forward packets with source
addresses outside the group of defined addresses. If you limit the number of secure MAC
addresses to one and assign a single secure MAC address, the PC attached to that port
is assured the full bandwidth of the port.
7.9.1
Port Security on Port
Step 1
Enable port security on the port.
Command Mode
Description
port security
PORTS
Bridge
Enables port security on the port.
Step 2
Set the maximum number of secure MAC addresses for the port.
Command Mode
Description
port security
PORTS
maximum
<1-16384>
Bridge
Sets the maximum number of secure MAC addresses
for the port. (default: 1)
Step 3
Set the violation mode and the action to be taken.
Command Mode
Description
port security
PORTS
violation
{
shutdown
|
protect
|
restrict
}
Bridge
Selects a violation mode.
(default: shutdown)
When configuring port security, note that the following information about port security vio-
lation modes:
•
protect
drops packets with unknown source addresses until you remove a sufficient
number of secure MAC addresses to drop below the maximum value.
•
restrict
drops packets with unknown source addresses until you remove a sufficient
number of secure MAC addresses to drop below the maximum value and causes the
Security Violation counter to increment.
•
shutdown
puts the interface into the error-disabled state immediately and sends an
SNMP trap notification.
Содержание 7724M/VSW - annexe 1
Страница 1: ......
Страница 385: ...CLI Management Guide TigerAccess EE 384 SMC7824M VSW ...
Страница 387: ......