2.Use the following command to manually add the “permitted” MAC addresses to the Address Forwarding Table (AFT):
>(config)# set aft entry <mac address> vlan
3.Use the following command to disable learning on a port or port range:
>(config)# set port allow-learning <mod- swport-range> disable
4.Use the following command to enable
>(config)# set port
*Note: To prevent any flooding of frames from unknown source addresses, enter all ports on the same VLAN as the port for which you are enabling MAC address lock.
5.Use the following command to enable intrusion traps on a port or port range:
>(config)# set port
6.Use the following command to set the intrusion trap timer to other than the default setting:
>(config)# set port
Enabling MAC Address Lock and Traps by Using SNMP
The MIB items that you use to perform this procedure are located in
ProminetMib.txt, version 5.2.
To use SNMP to enable the MAC Address Lock feature and traps for unknown source addresses:
1.Use the MIB items that are listed in Table 4 to manually add the “permitted” MAC addresses to the AFT.
June 14, 2001 | 15 |