HP FlexFabric 5700 Series Security Configuration Manual page 197

Hide thumbs Also See for FlexFabric 5700 Series:
Table of Contents

Advertisement

Figure 67 Network diagram
Host
Configuration procedure
# Enable port security.
<Device> system-view
[Device] port-security enable
# Set the secure MAC aging timer to 30 minutes.
[Device] port-security timer autolearn aging 30
# Set port security's limit on the number of secure MAC addresses to 64 on port Ten-GigabitEthernet
1/0/1.
[Device] interface ten-gigabitethernet 1/0/1
[Device-Ten-GigabitEthernet1/0/1] port-security max-mac-count 64
# Set the port security mode to autoLearn.
[Device-Ten-GigabitEthernet1/0/1] port-security port-mode autolearn
# Configure the port to be silent for 30 seconds after the intrusion protection feature is triggered.
[Device-Ten-GigabitEthernet1/0/1] port-security intrusion-mode disableport-temporarily
[Device-Ten-GigabitEthernet1/0/1] quit
[Device] port-security timer disableport 30
Verifying the configuration
# Verify the port security configuration.
[Device] display port-security interface ten-gigabitethernet 1/0/1
Port security parameters:
Port security
AutoLearn aging time
Disableport timeout
MAC move
Authorization fail
NAS-ID profile is not configured
OUI value list
Ten-GigabitEthernet1/0/1 is link-up
Port mode
NeedToKnow mode
Intrusion protection mode
Security MAC address attribute
Learning mode
Aging type
Max secure MAC addresses
Current secure MAC addresses
Authorization
XGE1/0/1
Device
: Enabled
: 30 min
: 30 s
: Denied
: Online
:
Internet
: autoLearn
: Disabled
: DisablePortTemporarily
: Sticky
: Periodical
: 64
: 5
: Permitted
185

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents