Chapter 9
| General Security Measures
Network Access (MAC Address Authentication)
show network-access
mac-address-table
Example
Console#show network-access interface ethernet 1/1
Global secure port information
Reauthentication Time
MAC Address Aging
Port : 1/1
MAC Authentication
MAC Authentication Intrusion Action
MAC Authentication Maximum MAC Counts : 1024
Maximum MAC Counts
Dynamic VLAN Assignment
Dynamic QoS Assignment
MAC Filter ID
Guest VLAN
Link Detection
Detection Mode
Detection Action
Console#
Use this command to display secure MAC address table entries.
Syntax
show network-access mac-address-table [static | dynamic]
[address mac-address [mask]] [interface interface] [sort {address |
interface}]
static - Specifies static address entries.
dynamic - Specifies dynamic address entries.
mac-address - Specifies a MAC address entry. (Format: xx-xx-xx-xx-xx-xx)
mask - Specifies a MAC address bit mask for filtering displayed addresses.
interface - Specifies a port interface.
ethernet unit/port
unit - Unit identifier. (Range: 1)
port - Port number. (Range: 1-28/52)
sort - Sorts displayed entries by either MAC address or interface.
Default Setting
Displays all filters.
Command Mode
Privileged Exec
Command Usage
When using a bit mask to filter displayed MAC addresses, a 1 means "care" and a 0
means "don't care". For example, a MAC of 00-00-01-02-03-04 and mask FF-FF-FF-
: 1800
: Enabled
: Disabled
: Block traffic
: 1024
: Enabled
: Disabled
: Disabled
: Disabled
: Disabled
: Link-down
: Trap
– 298 –