Cannot Activate Port Security; Unauthorized Device Gains Access To Fabric - Cisco 9134 - MDS Multilayer Fabric Switch Troubleshooting Manual

Mds 9000 family
Hide thumbs Also See for 9134 - MDS Multilayer Fabric Switch:
Table of Contents

Advertisement

Port Security Issues
S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m

Cannot Activate Port Security

Symptom
Table 19-5
Cannot Activate Port Security
Symptom
Possible Cause
Cannot activate port
Autolearn is enabled.
security.
Conflicting entries in the configure
database.
Configure database is empty.
Not all members of a PortChannel are
configured for port security.

Unauthorized Device Gains Access to Fabric

Symptom
Table 19-6
Unauthorized Device Gains Access to Fabric
Symptom
Possible Cause
Unauthorized device
Port security disabled.
gains access to fabric.
Port security not activated in the
VSAN.
Autolearn is enabled.
Cisco MDS 9000 Family Troubleshooting Guide, Release 3.x
19-12
Cannot activate port security.
Unauthorized device gains access to fabric.
Chapter 19
Troubleshooting FC-SP, Port Security, and Fabric Binding
Solution
See the
"Disabling Autolearn Using Fabric Manager"
section on page 19-13
or the
the CLI" section on page
19-13.
Remove the conflicting entries. Conflicting entries are
those that when activated will cause existing logged in
devices to logout. See the
Security Database Using Fabric Manager" section on
page 19-9
or the
"Verifying the Active Port Security
Database Using the CLI" section on page
Choose Fabricxx > VSANxx > Port Security, select the
Actions tab, heck the CopyActive to Config check box,
and click Apply Changes in Fabric Manager to copy the
active database to the configure database.
Or use the port-security database copy CLI command.
Add the missing members. Make sure that the sWWNs are
the same for all the members.
See the
"Verifying the Active Port Security Database Using
Fabric Manager" section on page 19-9
Active Port Security Database Using the CLI" section on
page
19-9.
Solution
See the
"Configuring Port Security with Autolearn Using
Fabric Manager" section on page 19-14
"Configuring Port Security with Autolearn Using the CLI"
section on page
19-15.
Disable autolearn. See the
Fabric Manager" section on page 19-13
Autolearn Using the CLI" section on page
"Disabling Autolearn Using
"Verifying the Active Port
19-9.
or the
"Verifying the
or the
"Disabling Autolearn Using
or the
"Disabling
19-13.
OL-9285-05

Hide quick links:

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents