Switchport Port-Security - Cisco Catalyst 2950 Command Reference Manual

Hide thumbs Also See for Catalyst 2950:
Table of Contents

Advertisement

switchport port-security

switchport port-security
Use the switchport port-security interface configuration command without keywords to enable port
security on an interface. Use the keywords to configure secure MAC addresses, a maximum number of
secure MAC addresses, or the violation mode. Use the no form of this command to disable port security
or to return to the default settings.
Syntax Description
mac-address mac-address
mac-address sticky
[mac-address]
maximum value
violation
protect
Catalyst 2950 and Catalyst 2955 Switch Command Reference
2-500
switchport port-security [mac-address mac-address] | [mac-address sticky [mac-address]] |
[maximum value] | [violation {protect | restrict | shutdown}]
no switchport port-security [mac-address mac-address] | [mac-address sticky [mac-address]] |
[maximum value] | [violation {protect | restrict | shutdown}]
Chapter 2
(Optional) Specify a secure MAC address for the port by entering a
48-bit MAC address. You can add additional secure MAC addresses up
to the maximum value configured.
(Optional) Enable the interface for sticky learning by entering only the
mac-address sticky keywords. When sticky learning is enabled, the
interface adds all secure MAC addresses that are dynamically learned
to the running configuration and converts these addresses to sticky
secure MAC addresses.
Specify a sticky secure MAC address by entering the mac-address
sticky mac-address keywords.
Although you can specify a sticky secure MAC address by
Note
entering the mac-address sticky mac-address keywords, we
recommend using the mac-address mac-address interface
configuration command to enter static secure MAC addresses.
(Optional) Set the maximum number of secure MAC addresses for the
interface. The range is 1 to 132. The default is 1.
(Optional) Set the security violation mode or the action to be taken if
port security is violated. The default is shutdown.
(Optional) Set the security violation protect mode. When the number of
secure MAC addresses reaches the limit allowed on the port, packets
with unknown source addresses are dropped until you remove a
sufficient number of secure MAC addresses or increase the number of
maximum allowable addresses. You are not notified that a security
violation has occurred.
Catalyst 2950 and 2955 Cisco IOS Commands
0L-10102-01

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 2955

Table of Contents