Administrator Guide

mac learning-limit station-move
The mac learning-limit station-move command allows a MAC address already in the table to be learned from another interface.
For example, if you disconnect a network device from one interface and reconnect it to another interface, the MAC address is learned on
the new interface. When the system detects this “station move,” the system clears the entry learned on the original interface and installs a
new entry on the new interface.
mac learning-limit no-station-move
The no-station-move option, also known as “sticky MAC,” provides additional port security by preventing a station move.
When you congure this option, the rst entry in the table is maintained instead of creating an entry on the new interface. no-station-
move is the default behavior. Entries created before you set this option are not aected.
To display a list of all interfaces with a MAC learning limit, use the following command.
Display a list of all interfaces with a MAC learning limit.
EXEC Privilege mode
show mac learning-limit
Learning Limit Violation Actions
Learning limit violation actions are user-congurable.
To congure the system to take an action when the MAC learning limit is reached on an interface and a new address is received using one
the following options with the mac learning-limit command, use the following commands.
Generate a system log message when the MAC learning limit is exceeded.
INTERFACE mode
learn-limit-violation log
Shut down the interface and generate a system log message when the MAC learning limit is exceeded.
INTERFACE mode
learn-limit-violation shutdown
Setting Station Move Violation Actions
Station move violation actions are user-congurable.
no-station-move is the default behavior. You can congure the system to take an action if a station move occurs using one the
following options with the
mac learning-limit command.
To display a list of interfaces congured with MAC learning limit or station move violation actions, use the following commands.
Generate a system log message indicating a station move.
INTERFACE mode
station-move-violation log
Shut down the rst port to learn the MAC address.
INTERFACE mode
station-move-violation shutdown-original
560
Layer 2