Configuring Vmps; Creating The Vmps Database - Cisco WS-C2948G-GE-TX Configuration Manual

Catalyst 4500 series switch
Table of Contents

Advertisement

Configuring VMPS

Configuring VMPS
To configure VMPS, follow these steps:
Step 1
Create the VMPS Database. See the
a.
b.
c.
Step 2
On the VMPS primary and backup servers, do the following:
a.
b.
See the
On the VMPS clients, do the following:
Step 3
a.
b.
See the
Step 4
Administer and monitor VMPS as necessary. See the

Creating the VMPS Database

To use VMPS, you first must create a VMPS database and store it on a TFTP server. The VMPS parser
is line based. Start each entry in the file on a new line. The example at the end of this section corresponds
to the information that is described below.
The VMPS database can have up to five sections:
Section 1, Global settings, lists the settings for the VMPS domain name, security mode, fallback VLAN,
and the policy for VMPS and VTP domain name mismatches.
Catalyst 4500 Series, Catalyst 2948G, Catalyst 2948G-GE-TX, and Catalyst 2980G Switches Software Configuration Guide—Release 8.2GLX
12-4
Determine the MAC addresses of the hosts that you want assigned to VLANs dynamically.
On your workstation or PC, create an ASCII text file that contains the MAC address-to-VLAN
mappings.
Move the ASCII text file to a TFTP server so it can be downloaded to the switch.
Specify the location and name of the VMPS database file.
Enable VMPS.
"Configuring the VMPS Server" section on page 12-7
Specify the IP addresses for the primary and backup VMSP servers.
Configure ports to dynamic mode.
"Configuring VMPS Clients" section on page 12-7
Begin the configuration file with the word "VMPS," to prevent other types of configuration files
from incorrectly being read by the VMPS server.
Define the VMPS domain. The VMPS domain should correspond to the VTP domain name that is
configured on the switch.
Define the security mode. VMPS can operate in open or secure mode. If you set it to open mode,
VMPS returns an access denied response for an unauthorized MAC address and returns the fallback
VLAN for a MAC address not listed in the VMPS database. In secure mode, VMPS shuts down the
port for a MAC address that is unauthorized or that is not listed in the VMPS database.
(Optional) Define a fallback VLAN. Assign the fallback VLAN if the MAC addresses of the
connected host is not defined in the database.
In the example at the end of this section, the VMPS domain name is WBU, the VMPS mode is set
to open, the fallback VLAN is set to the VLAN default, and if the VTP domain name does match
the VMPS domain name, VMPS sends an access denied response message.
Chapter 12
Configuring Dynamic VLAN Membership with VMPS
"Creating the VMPS Database" section on page
for more information.
"Monitoring VMPS" section on page
12-4.
for more information.
12-9.
78-15908-01

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents