Cisco 220 Series Smart Plus Administration Manual page 201

Hide thumbs Also See for 220 Series Smart Plus:
Table of Contents

Advertisement

Configuring Security
Configuring Port Security
STEP 1
STEP 2
STEP 3
Cisco 220 Series Smart Plus Switches Administration Guide Release 1.0.0.x
When a frame from a new MAC address is detected on a port where it is not
authorized (the port is classically locked, and there is a new MAC address learned
on another classically locked port, or the port is dynamically locked, and the
maximum number of allowed addresses has been exceeded), the protection
mechanism is invoked, and one of the following actions can take place:
Frame is discarded.
Frame is forwarded.
Frame is discarded and a SYSLOG message is generated.
Port is shut down.
When the secure MAC address is seen on another port, the frame is dealed with
the specified violation action, and the MAC address is not learned on that port.
Use the Port Security page to configure the security parameters for all ports and
LAGs, and to enable their modification.
To configure port security:
Click Security > Port Security.
Select an interface to be modified, and click Edit.
Enter the following information:
Interface—Select a port or a LAG to which the security settings apply.
Interface Status—Check Lock to lock the port or LAG.
Learning Mode—Select the type of port locking. This field is enabled only
if the Interface Status field is locked. To change the Learning Mode, the lock
interface must be cleared. After the mode is changed, the lock interface can
be reinstated. The options are:
Classic Lock
-
addresses that have already been learned exceeds the Max No. of
Addresses Allowed, all learned addresses will be cleared.
Limited Dynamic Lock
-
dynamic MAC addresses associated with the interface. The interface
learns up to the maximum addresses allowed on the interface. Both re-
learning and aging of MAC addresses are enabled.
Max No. of Addresses Allowed—Enter the maximum number of MAC
addresses that can be learned on the interface if Limited Dynamic Lock
learning mode is selected. The range is 1 to 256 and the default is 1.
—Locks the interface immediately. But if the number of
—Locks the interface by deleting the current
16
199

Advertisement

Table of Contents
loading

Table of Contents