ZyXEL VES1724-56B2 User Guide - Page 192

VLAN Security, Advanced Application > MAC Limit

Page 192 highlights

Chapter 19 MAC Limit The following table describes the labels in this screen. Table 79 MAC Limit LABEL DESCRIPTION Active Port Select this check box to enable the MAC limit feature on the Switch. Clear the check box to disable the feature. You must enable this for the Switch to apply the MAC limit settings for individual ports. This field displays the number of the port. Use the * entry to configure settings for all of the subscriber ports. Active SLF drop SLF stands for Source MAC address Look up Fail (SLF), which means the source MAC does not exist on the Switch. Select this check box to enable the MAC limit feature on this port. The Switch only forwards packets whose source MAC addresses can be found in the MAC address table and drops the other packets. Clear this check box to have the Switch also forward the packets whose source MAC addresses do not exist in the MAC address table. MAC Spoofing Select this check box to have the Switch detect whether a MAC address is connected to more than one port. When the Switch detects a spoofed MAC address on a subscriber port, it drops all the packets from the MAC address. Address Learning MAC address learning reduces outgoing broadcast traffic. Select this to have the Switch dynamically learn MAC addresses on the port. Limited Number of Learnt MAC Address Specify how many MAC addresses the Switch can dynamically learn on this port. For example, if you set this field to "5" on port 2, then only the devices with the first five learned MAC addresses can access port 2 at any one time. A sixth device would have to wait until one of the five learned MAC addresses aged out. MAC address aging time can be set in the Basic Setting > Switch Setup screen. The valid range is from 0 to 16K (16384). "0" means this feature is disabled, so the switch will learn MAC addresses up to the global limit of 16K. 19.2.1 MAC Limit: VLAN Security Click the VLAN Security link in the Advanced Application > MAC Limit screen to display VLAN security settings as the following screen. Use this screen to limit how many MAC addresses the Switch can dynamically learn on individual VLANs. Figure 118 MAC Limit: VLAN Security The following table describes the labels in this screen. Table 80 MAC Limit: VLAN Security LABEL Active DESCRIPTION Select this to limit the number of MAC addresses the Switch can dynamically learn on individual VLANs. 192 VES1724-56 User's Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414

Chapter 19 MAC Limit
VES1724-56 User’s Guide
192
The following table describes the labels in this screen.
19.2.1
MAC Limit: VLAN Security
Click the
VLAN Security
link in the
Advanced Application > MAC Limit
screen to display VLAN
security settings as the following screen. Use this screen to limit how many MAC addresses the
Switch can dynamically learn on individual VLANs.
Figure 118
MAC Limit: VLAN Security
The following table describes the labels in this screen.
Table 79
MAC Limit
LABEL
DESCRIPTION
Active
Select this check box to enable the MAC limit feature on the Switch. Clear the check box to
disable the feature. You must enable this for the Switch to apply the MAC limit settings for
individual ports.
Port
This field displays the number of the port. Use the * entry to configure settings for all of the
subscriber ports.
Active SLF drop
SLF stands for Source MAC address Look up Fail (SLF), which means the source MAC does
not exist on the Switch. Select this check box to enable the MAC limit feature on this port.
The Switch only forwards packets whose source MAC addresses can be found in the MAC
address table and drops the other packets.
Clear this check box to have the Switch also forward the packets whose source MAC
addresses do not exist in the MAC address table.
MAC Spoofing
Select this check box to have the Switch detect whether a MAC address is connected to more
than one port. When the Switch detects a spoofed MAC address on a subscriber port, it drops
all the packets from the MAC address.
Address
Learning
MAC address learning reduces outgoing broadcast traffic. Select this to have the Switch
dynamically learn MAC addresses on the port.
Limited Number
of Learnt MAC
Address
Specify how many MAC addresses the Switch can dynamically learn on this port. For
example, if you set this field to "5" on port 2, then only the devices with the first five learned
MAC addresses can access port 2 at any one time. A sixth device would have to wait until
one of the five learned MAC addresses aged out. MAC address aging time can be set in the
Basic Setting
>
Switch Setup
screen.
The valid range is from 0 to 16K (16384). “0” means this feature is disabled, so the switch
will learn MAC addresses up to the global limit of 16K.
Table 80
MAC Limit: VLAN Security
LABEL
DESCRIPTION
Active
Select this to limit the number of MAC addresses the Switch can dynamically learn on
individual VLANs.