Port Security Configuration Guidelines; Configuring Port Security; Enabling Port Security - Cisco WS-X6066-SLB-APC - Content Switching Module Software Manual

Catalyst 6000 series software configuration guide
Hide thumbs Also See for WS-X6066-SLB-APC - Content Switching Module:
Table of Contents

Advertisement

Chapter 35

Configuring Port Security

Port Security Configuration Guidelines

Follow these guidelines when configuring port security:
Configuring Port Security
These sections describe how to configure port security:

Enabling Port Security

To enable port security, perform this task in privileged mode:
Task
Step 1
Enable port security on the desired ports. If
desired, specify the secure MAC address.
Step 2
You can add MAC addresses to the list of secure
addresses.
Step 3
Verify the configuration.
This example shows how to enable port security using the learned MAC address on a port and verify the
configuration:
Console> (enable) set port security 2/1 enable
Port 2/1 port security enabled with the learned mac address.
Trunking disabled for Port 2/1 due to Security Mode
Console> (enable) show port 2/1
Port
----- ------------------ ---------- ---------- ------ ------ ----- ------------
2/1
78-13315-02
You cannot configure port security on a trunk port.
You cannot enable port security on a SPAN destination port and vice versa.
You cannot configure dynamic, static, or permanent CAM entries on a secure port.
When you enable port security on a port, any static or dynamic CAM entries associated with the port
are cleared; any currently configured permanent CAM entries are treated as secure.
Enabling Port Security, page 35-3
Setting the Maximum Number of Secure MAC Addresses, page 35-4
Setting the Port Security Age Time, page 35-5
Clearing MAC Addresses, page 35-5
Specifying the Security Violation Action, page 35-6
Setting the Shutdown Timeout, page 35-6
Disabling Port Security, page 35-7
Restricting Traffic Based on a Host MAC Address, page 35-7
Displaying Port Security, page 35-8
Name
Status
connected
Command
set port security mod/port enable [mac_addr]
set port security mod/port mac_addr
show port [mod[/port]]
Vlan
Level
522
normal
Catalyst 6000 Family Software Configuration Guide—Releases 6.3 and 6.4
Port Security Configuration Guidelines
Duplex Speed Type
half
100 100BaseTX
35-3

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents