Configuring Port Security Features - H3C S5600 Series Operation Manual

Hide thumbs Also See for S5600 Series:
Table of Contents

Advertisement

Before setting the port to operate in the autoLearn mode, be sure to set the maximum
number of secure MAC addresses allowed on the port with the port-security
max-mac-count command.
When the port operates in the autoLearn mode, you cannot change the maximum
number of secure MAC addresses allowed on the port.
After you set the port security mode to autoLearn, you cannot configure any static or
blackhole MAC addresses on the port.
After enabling port security, you can change the port security mode of a port only when
the port is operating in noRestriction mode, the default mode. To change the port
security mode of a port operating in any other mode, use the undo port-security
port-mode command to restore the default port security mode first.
If the port-security port-mode mode command has been executed on a port, none of the
following can be configured on the same port:
Maximum number of secure MAC addresses that the port can learn
Reflector port for port mirroring
Fabric port
Link aggregation

Configuring Port Security Features

Configuring the NTK feature
Follow these steps to configure the NTK feature:
To do...
Enter system view
Enter Ethernet port view
Configure the NTK feature
Use the command...
system-view
interface interface-type
interface-number
port-security ntk-mode
{ ntkonly |
ntk-withbroadcasts |
ntk-withmulticasts }
1-12
Remarks
Required
By default, NTK is disabled on
a port, namely all frames are
allowed to be sent.

Hide quick links:

Advertisement

Chapters

Table of Contents
loading

This manual is also suitable for:

S5600-26cS5600-26c-pwrS5600-26fS5600-50cS5600-50c-pwr

Table of Contents