EasyManua.ls Logo

Edge-Core ECS4620-28T

Edge-Core ECS4620-28T
1260 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Chapter 9
| General Security Measures
Network Access (MAC Address Authentication)
– 327 –
ā—† When port status changes to down, all MAC addresses are cleared from the
secure MAC address table. Static VLAN assignments are not restored.
ā—† The RADIUS server may optionally return a VLAN identifier list. VLAN identifier
list is carried in the ā€œTunnel-Private-Group-IDā€ attribute. The VLAN list can
contain multiple VLAN identifiers in the format ā€œ1u,2t,ā€ where ā€œuā€ indicates
untagged VLAN and ā€œtā€ tagged VLAN. The ā€œTunnel-Typeā€ attribute should be
set to ā€œVLAN,ā€ and the ā€œTunnel-Medium-Typeā€ attribute set to ā€œ802.ā€
Example
Console(config-if)#network-access mode mac-authentication
Console(config-if)#
network-access
port-mac-filter
Use this command to enable the specified MAC address filter. Use the no form of
this command to disable the specified MAC address filter.
Syntax
network-access port-mac-filter filter-id
no network-access port-mac-filter
filter-id - Specifies a MAC address filter table. (Range: 1-64)
Default Setting
None
Command Mode
Interface Configuration
Command Mode
ā—† Entries in the MAC address filter table can be configured with the network-
access mac-filter command.
ā—† Only one filter table can be assigned to a port.
Example
Console(config)#interface ethernet 1/1
Console(config-if)#network-access port-mac-filter 1
Console(config-if)#

Table of Contents

Other manuals for Edge-Core ECS4620-28T

Related product manuals