Table 53: Port Security Commands - Edge-Core ECS4620-28P Cli Reference Manual

28/52-port layer 3 stackable ge switch
Hide thumbs Also See for ECS4620-28P:
Table of Contents

Advertisement

Chapter 9
| General Security Measures
Port Security
Port Security
mac-learning
These commands can be used to enable port security on a port.
When MAC address learning is disabled on an interface, only incoming traffic with
source addresses already stored in the dynamic or static address table for this port
will be authorized to access the network.
When using port security, the switch stops learning new MAC addresses on the
specified port when it has reached a configured maximum number. Only incoming
traffic with source addresses already stored in the dynamic or static address table
for this port will be authorized to access the network. The port will drop any
incoming frames with a source MAC address that is unknown or has been
previously learned from another port. If a device with an unauthorized MAC
address attempts to use the switch port, the intrusion will be detected and the
switch can automatically take action by disabling the port and sending a trap
message.

Table 53: Port Security Commands

Command
mac-address-table static
mac-learning
port security
port security mac-address-
as-permanent
show mac-address-table
show port security
This command enables MAC address learning on the selected interface. Use the no
form to disable MAC address learning.
Syntax
[no] mac-learning
Default Setting
Enabled
Command Mode
Interface Configuration (Ethernet or Port Channel)
Command Usage
The no mac-learning command immediately stops the switch from learning
new MAC addresses on the specified port or trunk. Incoming traffic with source
addresses not stored in the static address table, will be flooded. However, if a
Function
Maps a static address to a port in a VLAN
Enables MAC address learning on the selected physical
interface or VLAN
Configures a secure port
Saves the MAC addresses learned by port security as static
entries.
Displays entries in the bridge-forwarding database
Displays port security status and secure address count
– 312 –
Mode
GC
IC
IC
PE
PE
PE

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents