Cisco SF 300-08 Administration Manual page 222

Cisco small business 300 series managed switch
Hide thumbs Also See for SF 300-08:
Table of Contents

Advertisement

Configuring Security
802. 1 X
STEP 4
802.1X
Cisco Small Business 300 Series Managed Switch Administration Guide
-
Limited Dynamic Lock—Locks the port by deleting the current dynamic
MAC addresses associated with the port. The port learns up to the
maximum addresses allowed on the port. Both re-learning and aging of
MAC addresses are enabled.
Max No. of Addresses Allowed—Enter the maximum number of MAC
addresses that can be learned on the port if Limited Dynamic Lock learning
mode is selected. The range is 0-256. The default is 0 indicating that only
static addresses are supported on the interface.
Action on Violation—Select an action to be applied to packets arriving on a
locked port. The options are:
-
Discard—Discards packets from any unlearned source.
-
Forward—Forwards packets from an unknown source without learning
the MAC address.
-
Shutdown—Discards packets from any unlearned source, and shuts
down the port. The port remains shut down until reactivated, or until the
switch is rebooted.
Trap—Select to enable traps when a packet is received on a locked port.
This is relevant for lock violations. For Classic Lock, this is any new address
received. For Limited Dynamic Lock, this is any new address that exceeds
the number of allowed addresses.
Trap Frequency—Enter minimum time (in seconds) that elapses between
traps.
Click Apply. Port security is modified, and the switch is updated.
Port-based access control has the effect of creating two types of access on the
switch ports. One point of access enables uncontrolled communication,
regardless of the authorization state (uncontrolled port). The other point of access
authorizes communication between the host and the switch.
16
211

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents