Specifications

DES-1228/ME Layer 2 Metro Ethernet Switch CLI Reference Manual
28
7
PORT SECURITY COMMANDS
The Switch’s port security commands in the Command Line Interface (CLI) are listed (along with the appropriate parameters) in
the following table.
Command Parameters
config port_security
ports
[ <auth_portlist>| all ] { admin_state [enable | disable] | max_learning_addr <max_lock_no
0-64> | lock_address_mode [DeleteOnTimeout | DeleteOnReset | Permanent]}(1)
delete port_security
entry
vlan_name <vlan_name 32> mac_address <macaddr> port <auth_port>
clear port_security_entry port <auth_portlist>
show port_security {ports <auth_portlist>}
enable port_security
trap_log
disable port_security
trap_log
Each command is listed, in detail, in the following sections.
config port_security ports
Purpose Used to configure port security settings.
Syntax
config port_security ports [ <auth_portlist>| all ] { admin_state [enable | disable] |
max_learning_addr <max_lock_no 0-64> | lock_address_mode [DeleteOnTimeout |
DeleteOnReset | Permanent]}(1)
Description This command allows for the configuration of the port security feature. Only the ports
listed in the <auth_portlist> are affected.
Parameters
<auth_portlist> Specifies a port or range of ports to be configured.
all Configure port security for all ports on the Switch.
admin_state [enable | disable] Enable or disable port security for the listed ports.
max_learning_addr <max_lock_no 0-64> Use this to limit the number of MAC addresses
dynamically listed in the FDB for the ports.
lock_address_mode [Permanent | DeleteOnTimout | DeleteOnReset]Indicates the
method of locking addresses. The user has three choices:
PermanentThe locked addresses will not age out.
DeleteOnTimeout The locked addresses will age out after the aging timer
expires (Aging Time is set using the FDB command).
DeleteOnReset The locked addresses will not age out until the Switch has been
reset.
Restrictions Only Administrator-level users can issue this command.
Example usage:
To configure the port security: