Configuring and Monitoring Port Security

Overview

Overview

Note

 

Port security is not available on ports running at 10 Mbps or the 1000 Mbps

 

 

uplinks. It is only available on ports running at 100 mbps.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Feature

Default

Menu

CLI

Web

 

 

 

 

 

 

 

 

 

 

 

Displaying Current Port Security

n/a

page 9-10

page 9-17

 

 

Configuring Port Security

disabled

page 9-12

page 9-17

 

 

Intrusion Alerts and Alert Flags

n/a

page 9-24

page 9-22

page 9-25

 

 

 

 

 

 

Using Port Security, you can configure each switch port with a unique list of

 

 

the MAC addresses of devices that are authorized to access the network

 

 

through that port. This enables individual ports to detect, prevent, and log

 

 

attempts by unauthorized devices to communicate through the switch.

 

 

 

 

Note

 

This feature does not prevent intruders from receiving broadcast and multi-

 

 

cast traffic.

 

 

 

 

 

 

 

 

 

 

 

 

 

Basic Operation

Default Port Security Operation. The default port security setting for each port is off, or continuous. That is, any device can access a port without causing a security reaction.

Intruder Protection. A port that detects an “intruder” blocks the intruding device from transmitting to the network through that port.

9-2