3Com 4210 PWR Configuration Manual page 130

9/18/26 port and pwr 9/18/26 port 4210 series switch
Table of Contents

Advertisement

128
C
12: P
S
HAPTER
ORT
Ignoring the
Authorization
Information from the
RADIUS Server
Configuring Security
MAC Addresses
n
C
ECURITY
ONFIGURATION
Configuring the Trap feature
Table 84 Configure port security trapping
Operation
Enter system view
Enable sending traps for the
specified type of event
After an 802.1x user or MAC-authenticated user passes Remote Authentication
Dial-In User Service (RADIUS) authentication, the RADIUS server delivers the
authorization information to the device. You can configure a port to ignore the
authorization information from the RADIUS server.
Table 85 Configure a port to ignore the authorization information from the RADIUS
server
Operation
Enter system view
Enter Ethernet port view
Ignore the authorization
information from the RADIUS
server
Security MAC addresses are special MAC addresses that never age out. One
security MAC address can be added to only one port in the same VLAN so that you
can bind a MAC address to one port in the same VLAN.
Security MAC addresses can be learned by the auto-learn function of port security
or manually configured.
Before adding security MAC addresses to a port, you must configure the port
security mode to autolearn. After this configuration, the port changes its way of
learning MAC addresses as follows.
The port deletes original dynamic MAC addresses;
If the amount of security MAC addresses has not yet reach the maximum
number, the port will learn new MAC addresses and turn them to security
MAC addresses;
If the amount of security MAC addresses reaches the maximum number, the
port will not be able to learn new MAC addresses and the port mode will be
changed from autolearn to secure.
The security MAC addresses manually configured are written to the configuration
file; they will not get lost when the port is up or down. As long as the
configuration file is saved, the security MAC addresses can be restored after the
switch reboots.
Command
system-view
port-security trap {
addresslearned |
dot1xlogfailure |
dot1xlogoff | dot1xlogon |
intrusion | ralmlogfailure |
ralmlogoff | ralmlogon }
Command
system-view
interface interface-type
interface-number
port-security authorization
ignore
Remarks
-
Required
By default, no trap is sent.
Remarks
-
-
Required
By default, a port uses the
authorization information
from the RADIUS server.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents