Verifying That Mac Limiting Is Working Correctly - Dell PowerConnect J-EX4200-24T Software Manual

J series; j-ex series
Table of Contents

Advertisement

Verifying That MAC Limiting Is Working Correctly

Verifying That MAC Limiting for Dynamic MAC Addresses Is Working Correctly
Purpose
Action
Meaning
Monitoring Port Security on page 2653
MAC limiting protects against flooding of the Ethernet switching table. MAC limiting sets
a limit on the number of MAC addresses that can be learned on a single Layer 2 access
interface (port).
The Junos OS provides two MAC limiting methods:
Maximum number of dynamic MAC addresses allowed per interface—When the limit
is exceeded, incoming packets with new MAC addresses are dropped.
Specific "allowed" MAC addresses for the access interface—Any MAC address that is
not in the list of configured addresses is not learned.
To verify MAC limiting configurations:
Verifying That MAC Limiting for Dynamic MAC Addresses Is Working
1.
Correctly on page 2657
Verifying That Allowed MAC Addresses Are Working Correctly on page 2658
2.
3.
Verifying Results of Various Action Settings When the MAC Limit Is
Exceeded on page 2658
4.
Customizing the Ethernet Switching Table Display to View Information for a Specific
Interface on page 2660
Verify that MAC limiting for dynamic MAC addresses is working on the switch.
Display the MAC addresses that have been learned. The following sample output shows
the results when two packets were sent from hosts on
were sent from hosts on
ge-0/0/2
action
:
drop
user@switch> show ethernet-switching table
Ethernet-switching table:
VLAN
MAC address
employee-vlan
*
employee-vlan
00:05:85:3A:82:77
employee-vlan
00:05:85:3A:82:79
employee-vlan
00:05:85:3A:82:80
employee-vlan
00:05:85:3A:82:81
employee-vlan
00:05:85:3A:82:83
employee-vlan
00:05:85:3A:82:85
The sample output shows that with a MAC limit of
fifth MAC address on
ge-0/0/2
address was not learned, and thus an asterisk (*) rather than an address appears in the
column in the first line of the sample output.
MAC address
ge-0/0/1
, with both interfaces set to a MAC limit of
7 entries, 6 learned
Type
Flood
Learn
Learn
Learn
Learn
Learn
Learn
4
for each interface, the packet for a
was dropped because it exceeded the MAC limit. The
Chapter 96: Verifying Port Security
and five packets requests
with the
4
Age
Interfaces
-
ge-0/0/2.0
0
ge-0/0/1.0
0
ge-0/0/1.0
0
ge-0/0/2.0
0
ge-0/0/2.0
0
ge-0/0/2.0
0
ge-0/0/2.0
2657

Advertisement

Table of Contents
loading

Table of Contents