Displaying And Maintaining Port Security; Port Security Configuration Examples; Configuring The Autolearn Mode - HP 6600 Security Configuration Manual

Table of Contents

Advertisement

Displaying and maintaining port security

Task
Display port security configuration
information, operation
information, and statistics about
one or more ports or all ports.
Display information about secure
MAC addresses.
Display information about blocked
MAC addresses.

Port security configuration examples

Configuring the autoLearn mode

Network requirements
See
Figure
76. Configure port GigabitEthernet 3/0/1 on the Router, as follows:
Accept up to 64 users on the port without authentication.
Permit the port to learn and add MAC addresses as sticky MAC addresses, and set the secure MAC
aging timer to 30 minutes.
After the number of secure MAC addresses reaches 64, the port stops learning MAC addresses. If
any frame with an unknown MAC address arrives, intrusion protection starts, and the port shuts
down and stays silent for 30 seconds.
Figure 76 Network diagram
Configuration procedure
# Enable port security.
<Router> system-view
[Router] port-security enable
# Set the secure MAC aging timer to 30 minutes.
[Router] port-security timer autolearn aging 30
# Enable intrusion protection traps on port GigabitEthernet 3/0/1.
Command
display port-security [ interface interface-list ] [ |
{ begin | exclude | include } regular-expression ]
display port-security mac-address security
[ interface interface-type interface-number ] [ vlan
vlan-id ] [ count ] [ | { begin | exclude | include }
regular-expression ]
display port-security mac-address block [ interface
interface-type interface-number ] [ vlan vlan-id ]
[ count ] [ | { begin | exclude | include }
regular-expression ]
188
Remarks
Available in any
view.
Available in any
view.
Available in any
view.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Hsr6600

Table of Contents