A
UTHENTICATION
C
OMMANDS
4-103
Command Usage
• If you enable port security, the switch stops learning new MAC
addresses on the specified port when it has reached a configured
maximum number. Only incoming traffic with source addresses
already stored in the dynamic or static address table will be accepted.
• First use the
port security max-mac-count
command to set the
number of addresses, and then use the
port security
command to
enable security on the port.
• Use the
no port security max-mac-count
command to disable port
security and reset the maximum number of addresses to the default.
• You can also manually add secure addresses with the
mac-address-table static
command.
• A secure port has the following restrictions:
- Cannot use port monitoring.
- Cannot be a multi-VLAN port.
- Cannot be connected to a network interconnection device.
- Cannot be a trunk port.
• If a port is disabled due to a security violation, it must be manually
re-enabled using the
no
shutdown
command.
Example
The following example enables port security for port 5, and sets the
response to a security violation to issue a trap message:
Related Commands
shutdown (4-180)
mac-address-table static (4-206)
show mac-address-table (4-208)
Console(config)#interface ethernet 1/5
Console(config-if)#port security action trap
Содержание 8700S-130
Страница 2: ......
Страница 3: ......
Страница 8: ...LIMITED WARRANTY iv ...
Страница 56: ...INITIAL CONFIGURATION 2 18 ...
Страница 189: ...PORT CONFIGURATION 3 133 Figure 3 61 Port Statistics continued ...
Страница 566: ...COMMAND LINE INTERFACE 4 294 ...
Страница 571: ...SOFTWARE SPECIFICATIONS A 5 Trap RFC 1215 UDP MIB RFC 2012 ...
Страница 572: ...SOFTWARE SPECIFICATIONS A 6 ...
Страница 576: ...TROUBLESHOOTING B 4 ...
Страница 589: ......
Страница 591: ...38 Tesla Irvine CA 92618 Phone 949 679 8000 ...
Страница 592: ... 8 ...