DES-3010F / DES-3010G / DES-3018 / DES-3026 Layer 2 Switch CLI Reference Manual
19
PORT SECURITY COMMANDS
The port security commands in the Command Line Interface (CLI) are listed (along with the appropriate parameters) in the
following table.
Command Parameters
config port_security ports [<portlist> | all ] {admin_state [enable | disable] |
max_learning_addr <max_lock_no 0-10> |
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]}
show port_security {ports <portlist>}
delete port_security_entry
vlan_name
<vlan_name 32> mac_address <macaddr> port <port>
clear port_security_entry port <portlist>
Each command is listed, in detail, in the following sections.
NOTE: The uplink module ports (DES-3010F/G ports 9-10, DES-3018 ports
17-18, DES-3026 ports 25-26) do not support the port security function.
config port_security ports
Purpose Used to configure port security settings.
Syntax
config port_security ports [<portlist> | all ] {admin_state
[enable | disable] | max_learning_addr <max_lock_no 0-10> |
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset]}
Description This command allows for the configuration of the port security
feature. Only the ports listed in the <portlist> are effected.
Parameters
ports <portlist> − Specifies a port or range of ports to be
configured for port security.
all − Configure port security for all ports on the Switch.
admin_state [enable | disable] – Enable or disable port security for
the listed ports.
max_learning_addr <max_lock_no 0-10> - Use this to limit the
number of MAC addresses dynamically listed in the FDB for the
ports.
lock_address_mode [Permanent | DeleteOnTimeout |
DeleteOnReset] – Indicates the method of locking addresses. The
user has three choices:
Permanent – The locked addresses will not age out after
the aging timer expires.
DeleteOnTimeout – The locked addresses will age out
after the aging timer expires.
DeleteOnReset – The locked addresses will not age out
until the Switch has been reset.
105