Configuring The Security Module; Default Security Settings - IBM Nways 8260 Manual

Multiprotocol intelligent switching hub
Table of Contents

Advertisement

The entire process of eavesdropping protection takes 32 bit-times from the time
the E-SEC card receives the destination address field in the packet.

7.11.2 Configuring the Security Module

To be able to use the security module you must perform the following steps:
1. Assign the security module to the backplane segment on which you want to
2. Use the following command to display the current security settings for your
Figure 77. Default Security Settings
3. Build the network security address table so it contains information about all
124
8260 Multiprotocol Intelligent Switching Hub
use the security feature. The following command is an example of how to
assign the security card, which is mounted on our 10-port 10Base-F module
which is installed in slot 7, to Ethernet_3 segment:
8260A> set module 7.2 network ethernet_3
network:
8260A> show security network ethernet_3
This command is necessary to determine the settings of various security
parameters in your network. Figure 77 shows the default security settings
when you first install the E-SEC module in your hub and assign it to a
segment.
8260A> show security network ethernet_3
ETHERNET_3 Network Security Configuration
-------------------------------------------------------------------------------
Securing Module:
Operational Mode
Administrative Mode
Auto-learning:
Eavesdrop Protection:
Intruder Detection:
Source Address Checking:
Source Port Checking:
8260A>
the stations which are authorized to access your network and their
corresponding port. The network security address table can be built
automatically and/or manually. We recommend the following procedure to
build this table:
a. Build the initial table using the auto-learning feature of the E-SEC
module. To do so, you must do the following:
Enable auto-learning feature for each port on which you want the
E-SEC card to learn the MAC addresses automatically. You can use
the following example for each port:
8260A> set security port 2.15 auto-learning enable
Slot 07.02 Version v1.00
E-SEC: Ethernet Private Line Card
DISABLED
DISABLED
ENABLED
DISABLED
Intruder Actions:
DISABLED
Intruder Jamming:
DISABLED
Intruder Reporting:
Intruder Port Disabling:
DISABLED
DISABLED
DISABLED

Advertisement

Table of Contents
loading

Table of Contents