Enabling And Configuring Port Security Aging - Cisco 2950G 24 - Catalyst Switch Software Configuration Manual

Desktop switch
Hide thumbs Also See for 2950G 24 - Catalyst Switch:
Table of Contents

Advertisement

Configuring Port Security
This example shows how to configure a static secure MAC address and a sticky secure MAC address on
Fast Ethernet port 12 and verify the configuration:
Switch# configure terminal
Enter configuration commands, one per line.
Switch(config)# interface fastethernet0/12
Switch(config-if)# switchport mode access
Switch(config-if)# switchport port-security
Switch(config-if)# switchport port-security mac-address 0000.02000.0004
Switch(config-if)# switchport port-security mac-address sticky
Switch(config-if)# switchport port-security mac-address sticky 0008.a343.b581
Switch(config-if)# end
Switch# show port-security address
=
-------------------------------------------------------------------
Vlan
----
1
1
1
1
1
1
1
1
1
1
1
-------------------------------------------------------------------
Total Addresses in System :11
Max Addresses limit in System :1024

Enabling and Configuring Port Security Aging

You can use port security aging to set the aging time for all secure addresses on a port. Two types of
aging are supported per port:
Use this feature to remove and add PCs on a secure port without manually deleting the existing secure
MAC addresses and to still limit the number of secure addresses on a port. You can enable or disable the
aging of statically-configured secure addresses on a per-port basis.
Catalyst 2950 Desktop Switch Software Configuration Guide
18-10
Secure Mac Address Table
Mac Address
Type
-----------
----
0000.0000.000a
SecureDynamic
0000.0002.0300
SecureDynamic
0000.0200.0003
SecureConfigured
0000.0200.0004
SecureConfigured
0003.fd62.1d40
SecureConfigured
0003.fd62.1d45
SecureConfigured
0003.fd62.21d3
SecureSticky
0005.7428.1a45
SecureSticky
0005.7428.1a46
SecureSticky
0006.1218.2436
SecureSticky
0008.a343.b581
SecureSticky
Absolute—The secure addresses on the port are deleted after the specified aging time.
Inactivity—The secure addresses on the port are deleted only if the secure addresses are inactive for
the specified aging time.
Chapter 18
Configuring Port-Based Traffic Control
End with CNTL/Z.
Ports
Remaining Age
(mins)
-----
-------------
Fa0/1
-
Fa0/1
-
Fa0/1
-
Fa0/12
-
Fa0/5
-
Fa0/5
-
Fa0/5
-
Fa0/8
-
Fa0/8
-
Fa0/8
-
Fa0/12
-
78-14982-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 2950

Table of Contents