Cisco Nexus 5000 Series Switch CLI Software Configuration Guide, NX-OS 4.0(1a)N1 (OL-16597-01, January 2009)

Send feedback to nx5000-docfeedback@cisco.com
45-5
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
OL-16597-01
Chapter 45 Configuring Port Security
Enabling Port Security
Configuring Port Security with Manual Database Configuration
To configure port security and manually configure the port security database, perform this task:
Step 1 Enable port security.
See the “Enabling Port Security” section on page 45-5.
Step 2 Manually configure all port security entries into the configure database on each VSAN.
See the “Configuring Port Security with Manual Database Configuration” section on page 45-5.
Step 3 Activate port security on each VSAN. This turns on auto-learning by default.
See the “Disabling Auto-Learning” section on page 45-8.
Step 4 Disable auto-learn on each VSAN.
See the “Disabling Auto-Learning” section on page 45-8.
Step 5 Copy the running configuration to the startup configuration, which saves the port security configuration
database to the startup configuration.
Step 6 Repeat Step 1 through Step 5 for all switches in the fabric.
Enabling Port Security
By default, the port security feature is disabled in Cisco Nexus 5000 Series switches.
To enable port security, perform this task:
Port Security Activation
This section includes the following topics:
Activating Port Security, page 45-6
Database Activation Rejection, page 45-6
Forcing Port Security Activation, page 45-6
Database Reactivation, page 45-7
Command Purpose
Step 1
switch# configuration terminal
Enters configuration mode.
Step 2
switch(config)# port-security enable
Enables port security on that switch.
switch(config)# no port-security enable
Disables (default) port security on that switch.