HP ProCurve 6200yl Series Access Security Manual page 340

Hide thumbs Also See for ProCurve 6200yl Series:
Table of Contents

Advertisement

Configuring and Monitoring Port Security
MAC Lockdown
Internal
Core
Network
There is no need to
lock MAC addresses
on switches in the
internal core network.
Network Edge
Figure 11-10.MAC Lockdown Deployed At the Network Edge Provides Security
11-28
5400zl Switch
3500yl Switch
Switch 1
Mixed Users
Basic MAC Lockdown Deployment. In the Model Network Topology shown
above, the switches that are connected to the edge of the network each have
one and only one connection to the core network. This means each switch has
only one path by which data can travel to Server A. You can use MAC
Lockdown to specify that all traffic intended for Server A's MAC Address must
go through the one port on the edge switches. That way, users on the edge can
still use other network resources, but they cannot "spoof" Server A and hijack
data traffic which is intended for that server alone.
5400zl Switch
3500yl Switch
Lock Server "A" to
these ports.
Switch 1
Server "A"
Edge Devices

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents