HP ProCurve Switch 6120G/XG Manual page 431

Hp procurve series 6120 blade switches access security guide
Hide thumbs Also See for ProCurve Switch 6120G/XG:
Table of Contents

Advertisement

Configuring and Monitoring Port Security
MAC Lockout
11-28
MAC Lockout overrides MAC Lockdown, port security, and 802.1X authenti-
cation.
You cannot use MAC Lockout to lock:
Broadcast or Multicast Addresses (Switches do not learn these)
Switch Agents (The switch's own MAC Address)
There are limits for the number of VLANs and Lockout MACs that can be
configured concurrently as all use MAC table entries. The limits are shown
below.
Table 11-10. Limits on Lockout MACs
# VLANs
< = 1024
1025-2048
If someone using a locked out MAC address tries to send data through the
switch a message is generated in the log file:
Lockout logging format:
W 10/30/03 21:35:15 maclock: module A: 0001e6-1f96c0
detected on port A15
W 10/30/03 21:35:18 maclock: module A: 0001e6-1f96c0
detected on port A15
W 10/30/03 21:35:18 maclock: module A: Ceasing lock-out
logs for 5m
As with MAC Lockdown a rate limiting algorithm is used on the log file so that
it does not become overclogged with error messages. (Refer to "Limiting the
Frequency of Log Messages" on page 11-25.)
# Lockout MACs
16
8

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve switch 6120xgProcurve 6120 series

Table of Contents