Using the Console Interface

MAC Address-Based Security

The MAC Address Security Configuration Menu screen (Figure 3-8) allows you to choose the appropriate screen to specify a range of system responses to unauthorized network access to your switch. The system response can range from sending a trap to disabling the port. The network access control is based on the MAC addresses of the authorized stations.

You can specify a list of up to 448 MAC addresses (within a single standalone switch or within one or more units in a single stacked configuration) that are authorized to access the switch or stack. You can also specify the ports that each MAC address is allowed to access.

The options for allowed port access include: NONE, ALL, and single or multiple ports that are specified in a list, for example, 1/1-4, 2/6, 3/9, etc., (see “Accelerator Keys for Repetitive Tasks” on page 3-34).

When the switch software detects a security violation, you can set the system to respond in any of the following ways:

Send a trap

Turn on destination address (DA) filtering

Disable the specific port

You can also combine any of the three preceding options.

Choose MAC Address-Based Security (or press s) from the Switch Configuration Menu screen to display the MAC Address Security Configuration Menu screen.

309985-C Rev 00

3-23

Page 165
Image 165
Nortel Networks 10BASE-T manual MAC Address-Based Security