Cisco Catalyst 2960-X Security Configuration Manual page 434

Cisco ios release 15.0(2)ex
Hide thumbs Also See for Catalyst 2960-X:
Table of Contents

Advertisement

Port Security Configuration Guidelines
When a connected device uses the same MAC address to request an IP address for the access VLAN
and then an IP address for the voice VLAN, only the access VLAN is assigned an IP address.
• When you enter a maximum secure address value for an interface, and the new value is greater than the
previous value, the new value overwrites the previously configured value. If the new value is less than
the previous value and the number of configured secure addresses on the interface exceeds the new
value, the command is rejected.
• The switch does not support port security aging of sticky secure MAC addresses.
This table summarizes port security compatibility with other port-based features.
Table 36: Port Security Compatibility with Other Switch Features
Type of Port or Feature on Port
11
DTP
Trunk port
Dynamic-access port
Routed port
SPAN source port
SPAN destination port
EtherChannel
Tunneling port
Protected port
IEEE 802.1x port
Voice VLAN port
IP source guard
Dynamic Address Resolution Protocol (ARP) inspection
Flex Links
11 DTP=Dynamic Trunking Protocol
12
switchport mode dynamic
A port configured with the
13
A VLAN Query Protocol (VQP) port configured with the
14 You must set the maximum allowed secure addresses on the port to two plus the maximum number of secure addresses allowed on the access VLAN.
Catalyst 2960-X Switch Security Configuration Guide, Cisco IOS Release 15.0(2)EX
410
12
port
13
14
interface configuration command.
switchport access vlan dynamic
Configuring Port-Based Traffic Control
Compatible with Port Security
No
Yes
No
No
Yes
No
Yes
Yes
Yes
Yes
Yes
Yes
Yes
Yes
interface configuration command.
OL-29048-01

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents