R3166-R3206-HP High-End Firewalls Network Management Configuration Guide-6PW101

40
Select static in the Type drop-down list.
Select 1 in the VLAN drop-down list.
Select GigabitEthernet0/1 in the Port drop-down list.
Click Apply.
Configuring web filtering in the CLI
The configuration tasks discussed in the following sections are all optional and can be performed in any
order.
NOTE:
The MAC address table can contain only Layer 2 Ethernet ports and Layer 2 aggregate interfaces.
Support for MAC address table configuration on ports and interfaces varies with device models.
This document covers only the configuration of unicast MAC address table entries, including static,
dynamic and blackhole MAC address table entries.
Configuring MAC address table entries
To fence off MAC address spoofing attacks and improve port security, you can manually add MAC
address table entries to bind ports with MAC addresses.
You can also configure blackhole MAC address entries to filter out packets with certain destination MAC
addresses.
Adding or modifying a MAC address table entry globally
Follow these steps to add or modify a static, dynamic, or blackhole MAC address table entry in system
view:
To do… Use the command…
Remarks
Enter system view
system-view
Add or modify a
dynamic, static, or
blackhole MAC
address entry
Add or modify a dynamic or static
MAC address entry:
mac-address { dynamic | static }
mac-address interface interface-type
interface-number vlan vlan-id
Add or modify a blackhole MAC
address entry:
mac-address blackhole mac-address
vlan vlan-id
Required
Use either command.
Ensure that you have created the VLAN
and assign the interface to the VLAN.
Adding or modifying a MAC address table entry on an interface
Follow these steps to add or modify a static or dynamic MAC address table entry in interface view:
To do… Use the command…
Remarks
Enter system view system-view
Enter Layer 2
Ethernet/ aggregate
interface view
interface interface-type interface-number