43-2
Software Configuration Guide—Release 15.0(2)SG
OL-23818-01
Chapter 43 Configuring Port Security
Port Security Commands
Port Security Commands
This table lists the commands most commonly used with port security.
Command Purpose Navigation
errdisable recovery cause
psecure-violation Brings a secure port out of
error-disabled state. Violation Actions, page 43-6
errdisable recovery interval Customizes the time to recover from
a specified error disable cause. Violation Actions, page 43-6
port-security mac-address Configures all secure MAC addresses
on each VLAN. Secure MAC Addresses, page 43-4
port-security maximum Configures a maximum number of
MAC addresses on an interface. Configuring Port Security on Access
Ports, page 43-7
private-vlan association add Creates an association between a
secondary VLAN and a primary
VLAN.
Example of Port Security on an
Isolated Private VLAN Host Port,
page 43-16
private-vlan isolated Designates the VLAN as a private
VLAN. Configuring Port Security on an
Isolated Private VLAN Host Port,
page 43-14
private-vlan primary Specifies the VLAN as the primary
private VLAN. Configuring Port Security on an
Isolated Private VLAN Host Port,
page 43-14
switchport mode private-vlan host Specifies that ports with valid private
VLAN trunk association become
active host private VLAN trunk
ports.
Configuring Port Security on an
Isolated Private VLAN Host Port,
page 43-14
switchport private-vlan
host-association Defines a host association on an
isolated host port. Configuring Port Security on an
Isolated Private VLAN Host Port,
page 43-14
switchport private-vlan mapping Defines a private VLAN for the
promiscuous ports. Configuring Port Security on an
Isolated Private VLAN Host Port,
page 43-14
switchport port-security Enables port security. Configuring Port Security on Access
Ports, page 43-7
switchport port-security aging static Configures static aging of MAC
address. Aging Secure MAC Addresses,
page 43-5
switchport port-security aging time Specifies an aging time for a port. Example 3: Setting the Agi ng Timer,
page 43-11
switchport port-security limit rate
invalid-source-mac Sets the rate limit for bad packets. Example 7: Setting a Rate Limit for
Bad Packets, page 43-13
switchport port-security mac-address Configures a secure MAC address for
an interface. Example 5: Configuring a Secure
MAC Address, page 43-12
switchport port-security mac-address
mac_address sticky Specifies the sticky MAC address for
an interface. Configuring Port Security on Access
Ports, page 43-7