Denying A Mac Address; Understanding The Rules For Violation Action Configuration; Interaction Between Global And Interface Level Violation; Actions - Dell PowerConnect B-RX Configuration Manual

Bigiron rx series supporting multi-service ironware v02.7.03
Hide thumbs Also See for PowerConnect B-RX:
Table of Contents

Advertisement

32

Understanding the rules for violation action configuration

However, when deny-log-rate is configured,
interface ethernet 14/1
disable
port security
enable
maximum 5
violation restrict 1000
deny-log-rate 4
secure-mac-address 0000.0022.2222 10
secure-mac-address 0000.0022.2223 10
secure-mac-address 0000.0022.2224 10
secure-mac-address 0000.0022.2225 10
secure-mac-address 0000.0022.2226 10
The following Syslog messages are generated.
Mar 10 17:38:51:I:Port security denied pkt: 0000.0022.2224 -> 0000.0011.1111
198.19.1.2 -> 198.19.1.1 [Protocol:114]
Mar 10 17:38:51:I:Port security denied pkt: 0000.0022.2224 -> 0000.0011.1111
198.19.1.2 -> 198.19.1.1 [Protocol:114]
Mar 10 17:38:51:I:Port security denied pkt: 0000.0022.2224 -> 0000.0011.1111
198.19.1.2 -> 198.19.1.1 [Protocol:114]
Mar 10 17:38:51:I:Port security denied pkt: 0000.0022.2224 -> 0000.0011.1111
198.19.1.2 -> 198.19.1.1 [Protocol:114]
Mar 10 17:38:51:I:Port security denied pkt: 0000.0022.2224 -> 0000.0011.1111
198.19.1.2 -> 198.19.1.1 [Protocol:114]

Denying a MAC address

The action violation deny can be configured for unsecure MAC addresses that are received on an
interface. This option denies all MAC addresses in the deny MAC address list. To enable this
violation action, enter the following command,
BigIron RX(config)# int e 7/11
BigIron RX(config-if-e100-7/11)#port security
BigIron RX(config-port-security-e100-7/11)# violation deny
Syntax: [no] violation deny [force]
If the force parameter is used, then the MAC addresses are denied automatically; otherwise,
prompts are displayed to confirm whether or not the MAC addresses are to be denied.
Understanding the rules for violation action configuration
There are certain things to note when configuring or changing the violation action at the global or
interface level.

Interaction between global and interface level violation

actions

938
If there is no violation action configured at the global or interface level, then the default
violation action at the global level is shutdown and is applied to all interfaces.
BigIron RX Series Configuration Guide
53-1001986-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Bigiron rx series

Table of Contents