Defining Port Security - Cisco SGE2000 - - Gigabit Switch Administration Manual

48-port 10/100/1000 sfe/sge managed switches
Hide thumbs Also See for SGE2000 - Cisco - Gigabit Switch:
Table of Contents

Advertisement

Configuring Device Security
Defining Traffic Control
NOTE
Cisco Small Business SFE/SGE Managed Switches Administration Guide

Defining Port Security

Network security can be increased by limiting access on a specific port only to
users with specific MAC addresses. The MAC addresses can be dynamically
learned or statically configured. Locked port security monitors both received and
learned packets that are received on specific ports. Access to the locked port is
limited to users with specific MAC addresses. These addresses are either
manually defined on the port, or learned on that port up to the point when it is
locked. When a packet is received on a locked port, and the packet source MAC
address is not tied to that port (either it was learned on a different port, or it is
unknown to the system), the protection mechanism is invoked, and can provide
various options. Unauthorized packets arriving at a locked port are either:
Forwarded
Discarded with no trap
Discarded with a trap
Cause the port to be shut down.
Locked port security also enables storing a list of MAC addresses in the
configuration file. The MAC address list can be restored after the device has been
reset. Disabled ports are activated from the Port Security Page.
To configure port lock, 802. 1 x multiple host mode must be enabled.
To define port security:
4
76

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sge2000pSge2010Sfe2010Sfe2000

Table of Contents