C
OMMAND
L
INE
I
NTERFACE
4-102
port security
This command enables or configures port security. Use the no form without
any keywords to disable port security. Use the no form with the appropriate
keyword to restore the default settings for a response to security violation or
for the maximum number of allowed addresses.
Syntax
port security [action {shutdown | trap | trap-and-shutdown}
| max-mac-count address-count]
no port security [action | max-mac-count]
• action - Response to take when port security is violated.
- shutdown - Disable port only.
- trap - Issue SNMP trap message only.
- trap-and-shutdown - Issue SNMP trap message and disable port.
• max-mac-count
- address-count - The maximum number of MAC addresses that can be
learned on a port. (Range: 0 - 1024, where 0 means disabled)
Default Setting
• Status: Disabled
• Action: None
• Maximum Addresses: 0
Command Mode
Interface Configuration (Ethernet)
Command Usage
• If you enable port security, the switch stops learning new MAC addresses
on the specified port when it has reached a configured maximum
Table 4-31 Port Security Commands
Command Function Mode Page
port security Configures a secure port IC 4-102
mac-address-table static Maps a static address to a port in a VLAN GC 4-217
show mac-address-table Displays entries in the bridge-forwarding
database
PE 4-219