Configuring Learned Port Security; Enabling/Disabling Learned Port Security - Alcatel-Lucent OmniSwitch AOS Release 7 Manual

Network configuration guide
Hide thumbs Also See for OmniSwitch AOS Release 7:
Table of Contents

Advertisement

Configuring Learned Port Security

Configuring Learned Port Security
This section describes how to use Command Line Interface (CLI) command to configure Learned Port
Security (LPS) on a switch. See the
brief tutorial on configuring LPS.
Configuring LPS involes the following procedures:
Enabling LPS for one or more switch ports. This procedure is described in
Learned Port Security" on page
Configuring the source learning time window during which MAC addresses are learned. This
procedure is described in
Configuring the maximum number of bridged MAC addresses allowed on an LPS port. This procedure
is described in
"Configuring the Number of Bridged MAC Addresses Allowed" on page
Configuring the maximum number of filtered MAC addresses allowed on an LPS port. This procedure
is describe in
"Configuring the Number of Filtered MAC Addresses Allowed" on page 25-11
Configuring one or more static authorized MAC addresses. This procedure is described in
"Configuring an Authorized MAC Address Range" on page
Specifying whether or not an LPS port shuts down all traffic or only restricts traffic when an
unauthorized MAC address is received on the port. This procedure is described in
"Selecting the Security Violation Mode" on page

Enabling/Disabling Learned Port Security

By default, LPS is disabled on all switch ports. To enable LPS on a port, use the
For example, the following command enables LPS on port 1 of slot 4:
-> port-security port 4/1 learning-enable
To enable LPS on multiple ports, specify a range of ports. For example:
-> port-security port 4/1-5 learning-enable
-> port-security port 5/12-20 learning-enable
Note. When LPS is enabled on an active port, all MAC addresses learned on that port prior to the time
LPS was enabled are cleared from the source learning MAC address table.
To disable LPS on a port, use the port-security command with the disable parameter. For example, the
following command disables LPS on a range of ports:
-> port-security 5/21-24 learning-disable
To disable all the LPS ports on a chassis, use the port-security chassis learning-disable command, as
shown:
-> port-security chassis learning-disable
OmniSwitch AOS Release 7 Network Configuration Guide
"Sample Learned Port Security Configuration" on page 25-3
25-9.
"Configuring a Source Learning Time Limit" on page
25-12.
March 2011
Configuring Learned Port Security
"Enabling/Disabling
25-10.
25-12.
port-security
for a
25-11.
command.
page 25-9

Advertisement

Table of Contents
loading

This manual is also suitable for:

Omniswitch aos 7

Table of Contents