Leaflet

84
OL-11615-01
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat6000/sw_8_5/cmd_ref/setsn
_su.htm#wp1099527
Layer 2 Port Security
The Layer 2 Port Security rate limiter limits the rate at which packets are processed on ports with port
security enabled.
Note Hardware-based rate limiters are supported on Catalyst 6500 Series switches that are configured with a
Distributed Forwarding Card 3A (DFC3A) or the Policy Feature Card 3 (PFC3) only. The Catalyst 6500
Series switch cannot be in truncated mode. If you attempt to enable rate limiting while in truncated
mode, an error message is displayed.
This rate limiter is disabled by default. To enable or set the Layer 2 Port Security rate limiter, use the set
rate-limit l2port-security command. A rate value of 0 disables this rate limiter.
Console> (enable) set rate-limit l2port-security enable
Console> (enable) set rate-limit l2port-security
rate
This example shows how to enable Layer 2 rate limiting for port security:
Console> (enable) set rate-limit l2port-security enable
2port-security rate limiter enabled.
Console> (enable)
Console> (enable) set rate-limit l2port-security rate 10000
l2port-security rate limiter rate set to 10000 pps.
Console> (enable)
For more information on the set rate-limit l2port-security command, refer to the following URL:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat6000/sw_8_5/cmd_ref/set_po
_r.htm#wp1597259
Layer 2 PDU
The Layer 2 protocol data unit (PDU) rate limiter allows you to limit the number of Layer 2 PDU
protocol packets (including BPDUs, DTP, PAgP, CDP, STP, and VTP packets) destined for the route
processor.
Note Hardware-based rate limiters are supported on Catalyst 6500 Series switches that are configured with a
Distributed Forwarding Card 3A (DFC3A) or the Policy Feature Card 3 (PFC3) only. The Catalyst 6500
Series switch cannot be in truncated mode. If you attempt to enable rate limiting and you are in truncated
mode, a message is displayed.
This rate limiter is disabled by default. To enable or set the Layer 2 PDU rate limiter, use the set
rate-limit l2pdu command. A rate value of 0 disables this rate limiter.
Console> (enable) set rate-limit l2pdu enable
Console> (enable) set rate-limit l2pdu
rate
This example shows how to enable Layer 2 PDU rate limiting:
Console>(enable) set rate-limit l2pdu enable
Layer 2 rate limiter for PDUs enabled on the switch.
Console>(enable)