Port Security
Port Security
A B
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security maximum 1 S(config-if)# switchport port-security mac-address 0000.0001.000A S(config-if)# switchport port-security violation shutdown
ICND1 v1.02-1
Port Security
B A
up
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security
ICND1 v1.02-2
Port Security
C B A
up
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security
ICND1 v1.02-3
Port Security
B A
up
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security maximum 2 S(config-if)# switchport port-security mac-address sticky S(config-if)# switchport port-security violation shutdown
Port Security
B A
up
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security
Port Security
up down
B A
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security maximum 1 S(config-if)# switchport port-security mac-address 0000.0001.000A S(config-if)# switchport port-security violation shutdown
Port Security
up
B A
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security
Port Security
up
B A
S(config)# interface fa0/1 S(config-if)# switchport mode access S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security S(config-if)# switchport port-security
A B
ICND1 v1.02-9
B A
S(config)# errdisable detect cause all S(config)# errdisable recovery cause all S(config)# errdisable recovery interval 30
ICND1 v1.02-10
SwitchX# show port-security interface f0/5 Port Security : Enabled Port Status : Secure-up Violation Mode : Shutdown Aging Time : 20 mins Aging Type : Absolute SecureStatic Address Aging : Disabled Maximum MAC Addresses : 1 Total MAC Addresses : 1 Configured MAC Addresses : 0 Sticky MAC Addresses : 0 Last Source Address : 0000.0000.0000 Security Violation Count : 0
ICND1 v1.02-11
SwitchX# show port-security address Secure Mac Address Table ----------------------------------------------------------------Vlan Mac Address Type Ports Remaining Age (mins) --------------------------------1 0008.dddd.eeee SecureConfigured Fa0/5 ----------------------------------------------------------------Total Addresses in System (excluding one mac per port) : 0 Max Addresses limit in System (excluding one mac per port) : 1024
ICND1 v1.02-12
SW1# show interface status err-disabled Port Name Status Reason Err-disabled Vlans Fa0/2 err-disabled port-security
ICND1 v1.02-13