H3C MSR Series Command Reference Manual page 230

Comware 7 security
Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

Field
Intrusion trap
Address-learned trap
Mac-auth-failure trap
Mac-auth-logon trap
Mac-auth-logoff trap
OUI value list
Port mode
NeedToKnow mode
Intrusion protection mode
Learning mode
Description
Whether SNMP notifications for intrusion protection are enabled. If
they are enabled, the device sends SNMP notifications after illegal
packets are detected.
Whether SNMP notifications for MAC address learning are
enabled. If they are enabled, the device sends SNMP notifications
after it learns a new MAC address.
Whether SNMP notifications for MAC authentication failures are
enabled.
Whether SNMP notifications for MAC authentication successes are
enabled.
Whether SNMP notifications for MAC authentication user logoffs
are enabled.
List of OUI values allowed for authentication.
Port security mode:
noRestrictions.
autoLearn.
macAddressWithRadius.
macAddressElseUserLoginSecure.
macAddressElseUserLoginSecureExt.
secure.
userLogin.
userLoginSecure.
userLoginSecureExt.
macAddressOrUserLoginSecure.
macAddressOrUserLoginSecureExt.
userLoginWithOUI.
Need to know (NTK) mode:
NeedToKnowOnly—Allows only unicast packets with
authenticated destination MAC addresses.
NeedToKnowWithBroadcast—Allows only unicast packets
and broadcasts with authenticated destination MAC
addresses.
NeedToKnowWithMulticast—Allows unicast packets,
multicasts, and broadcasts with authenticated destination
MAC addresses.
Disabled—NTK is disabled.
Intrusion protection action:
BlockMacAddress—Adds the source MAC address of the
illegal packet to the blocked MAC address list.
DisablePort—Shuts down the port that receives illegal
packets permanently.
DisablePortTemporarily—Shuts down the port that receives
illegal packets for some time.
NoAction—Does not perform intrusion protection.
Secure MAC address learning mode:
Dynamic.
Sticky.
207

Advertisement

Table of Contents
loading

Table of Contents