1166
C
91: P
HAPTER
ORT
Enabling the autoLearn
Mode
Enabling the
userLoginWithOUI Mode
Enabling any other Port
Security Mode
S
C
ECURITY
ONFIGURATION
Configuration prerequisites
Before enabling the autoLearn mode, you need to set the maximum number of
secure MAC addresses allowed on the port.
Configuration procedure
Follow these steps to enable the autoLearn mode:
To do...
Enter system view
Enter Ethernet port view
Enable the autoLearn mode
n
When a port operates in autoLearn mode, you cannot change the maximum
number of secure MAC addresses allowed on the port.
In userLoginWithOUI mode, a port supports one 802.1x user as well as users
whose MAC addresses have an OUI value among the specified ones.
Follow these steps to enable the userLoginWithOUI mode:
To do...
Enter system view
Set an OUI value for user
authentication
Enter Ethernet port view
Enable the userLoginWithOUI
mode
n
An organizationally unique identifier (OUI), the left-most 24 bits of a MAC
■
address, is a globally unique identifier assigned by IEEE to a certain
manufacturer.
You can configure multiple OUI values.
■
Follow these steps to enable any other port security mode:
To do...
Enter system view
Enter Ethernet port
view
Use the command...
system-view
interface interface-type
interface-number
port-security port-mode
autolearn
Use the command...
system-view
port-security oui oui-value
index index-value
interface interface-type
interface-number
port-security port-mode
userlogin-withoui
Use the command...
system-view
interface interface-type interface-number
Remarks
-
-
Required
By default, a port operates in
noRestrictions mode.
Remarks
-
Optional
Not configured by default
-
Required
By default, a port operates in
noRestrictions mode.
Remarks
-
-