COMMAND LINE INTERFACE
Command Usage
•If you enable port security, the switch will stop dynamically learning new addresses on the specified port. Only incoming traffic with source addresses already stored in the dynamic or static address table will be accepted.
•To use port security, first allow the switch to dynamically learn the <source MAC address, VLAN> pair for frames received on a port for an initial training period, and then enable port security to stop address learning. Be sure you enable the learning function long enough to ensure that all valid VLAN members have been registered on the selected port.
•To add new VLAN members at a later time, you can manually add secure addresses with the
•A secure port has the following restrictions:
-Cannot be connected to a network interconnection device.
-Cannot be a member of a static trunk.
•If a port is disabled due to a security violation, it must be manually
•Although the port security action command is an Interface Configuration command, it applies globally to all switch ports.
Example
This example sets the port security action for the switch and enables port security for port 5.
Console(config)#interface ethernet 1/5
clear counters
Use this command to clear statistics on an interface.