Sample MAC-based VLAN application

mac-authentication

max-age 60

mac-authentication

hw-deny-age 30

mac-authentication

auth-passwd-format xxxx.xxxx.xxxx

interface ethernet

1/1/1

mac-authentication mac-vlan max-mac-entries 5

mac-authentication mac-vlan 0000.0088.b9fe vlan 1 priority 1

mac-authentication mac-vlan enable

!

1/1/2

interface ethernet

mac-authentication

mac-vlan max-mac-entries 5

mac-authentication

mac-vlan enable

!

 

!

end

The show table-mac-vlancommand returns the following results for all ports in this configuration.

Brocade# show table-mac-vlan

---------------------------------------------------------------

Port

Vlan Accepted

Rejected

Attempted

Static

Static

Max

 

Macs

Macs

Macs

Macs

Conf

Macs

----------------------------------------------------------------

1/1/1

N/A

2

1

0

1

1

5

1/1/2

N/A

0

0

0

0

0

5

The show table-mac-vlan ethernet 1/1/1 command returns the following results for port1/1/1 in this configuration.

Brocade# show table-mac-vlan ethernet 1/1/1

-------------------------------------------------------------------------------

MAC Address

Port

Vlan Authenticated Time Age

CAM

MAC Dot1x Type Pri

 

 

 

Index

Index

-------------------------------------------------------------------------------

0000.0075.3f73 1/1/1

2

Yes

00d00h00m46s S32

0001

3728

Dis

Dyn

4

0000.0088.b9fe

1/1/1

1

Yes

00d00h00m08s

Dis

0000

0970

Dis

Sta

1

0000.0075.3ff5

1/1/1

666

Rst

01d18h47m58s

S8

0002

1ee4 Dis

Dyn

0

Brocade ICX 6650 Security Configuration Guide

229

53-1002601-01

 

Page 249
Image 249
Brocade Communications Systems 6650 manual 0000.0075.3f73 1/1/1