Nortel Networks 2300 Switch User Manual


 
Configuring and managing ports and VLANs 109
Nortel WLAN—Security Switch 2300 Series Configuration Guide
To display configuration information and statistics for Layer 2 forwarding restriction, use the following command:
show security l2-restrict [vlan vlan-id | all]
The following commands restrict Layer 2 forwarding of client data in VLAN abc_air to the default routers with MAC
address aa:bb:cc:dd:ee:ff and 11:22:33:44:55:66, and display restriction information and statistics:
WSS# set security l2-restrict vlan abc_air mode enable permit-mac aa:bb:cc:dd:ee:ff
11:22:33:44:55:66
success: change accepted.
WSS# show security l2-restrict
The En field indicates whether restriction is enabled. The Drops field indicates how many packets were addressed
directly from one client to another and dropped by WSS Software. The Hits field indicates how many packets the
permitted default router has received from clients.
To reset the statistics counters, use the following command:
clear security l2-restrict counters [vlan vlan-id | all]
Displaying VLAN information
To display VLAN configuration information, use the following command:
show vlan config [vlan-id]
To display information for VLAN burgundy, type the following command:
Note. There can be a slight delay before functions such as pinging between clients
become available again after Layer 2 restrictions are lifted. Even though packets are
passed immediately once Layer 2 restrictions are gone, it can take 10 seconds or more for
upper-layer protocols to update their ARP caches and regain their functionality.
V L A N N a m e E n D r o p s P e r m i t M A C H i t s
1 abc_air Y 0 aa:bb:cc:dd:ee:ff 5947
1 1: 22 :3 3: 44 :55 :6 6 9