Cisco NME-16ES-1G User Guide - Page 122

Preventing the Forwarding of Dynamically Learned Stations, no switchport

Page 122 highlights

Configuration Tasks 16- and 36-Port Ethernet Switch Module for Cisco 2600 Series, Cisco 3600 Series, and Cisco 3700 Series Note The protected port feature is not compatible with fallback bridging. When fallback bridging is enabled, it is possible for packets to be forwarded from one protected port on a switch to another protected port on the same switch if the ports are in different VLANs. Beginning in privileged EXEC mode, follow these steps to create a bridge group and assign an interface to it: Step 1 Step 2 Command configure terminal bridge bridge-group protocol vlan-bridge Step 3 interface interface-id Step 4 bridge-group bridge-group Step 5 Step 6 Step 7 end show running-config copy running-config startup-config Purpose Enters global configuration mode. Assigns a bridge group number, and specify the VLAN-bridge spanning-tree protocol to run in the bridge group. The ibm and dec keywords are not supported. For bridge-group, specify the bridge group number. The range is 1 to 255. You can create up to 31 bridge groups. Frames are bridged only among interfaces in the same group. Enters interface configuration mode, and specify the interface on which you want to assign the bridge group. The specified interface must be one of these: • A routed port: a physical port that you have configured as a Layer 3 port by entering the no switchport interface configuration command. • An SVI: a VLAN interface that you created by using the interface vlan vlan-id global configuration command. These ports must have IP addresses assigned to them. Assigns the interface to the bridge group created in Step 2. By default, the interface is not assigned to any bridge group. An interface can be assigned to only one bridge group. Returns to privileged EXEC mode. Verifies your entries. (Optional) Saves your entries in the configuration file. To remove a bridge group, use the no bridge bridge-group protocol vlan-bridge global configuration command. To remove an interface from a bridge group, use the no bridge-group bridge-group interface configuration command. Preventing the Forwarding of Dynamically Learned Stations By default, the switch forwards any frames for stations that it has dynamically learned. By disabling this activity, the switch only forwards frames whose addresses have been statically configured into the forwarding cache. 122 Cisco IOS Release 12.2(2)XT, 12.2(8)T, and 12.2(15)ZJ

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246

16- and 36-Port Ethernet Switch Module for Cisco 2600 Series, Cisco 3600 Series, and Cisco 3700 Series
Configuration Tasks
122
Cisco IOS Release 12.2(2)XT, 12.2(8)T, and 12.2(15)ZJ
Note
The protected port feature is not compatible with fallback bridging. When fallback bridging is
enabled, it is possible for packets to be forwarded from one protected port on a switch to another
protected port on the same switch if the ports are in different VLANs.
Beginning in privileged EXEC mode, follow these steps to create a bridge group and assign an interface
to it:
To remove a bridge group, use the
no
bridge
bridge-group
protocol vlan-bridge
global configuration
command. To remove an interface from a bridge group, use the
no
bridge-group
bridge-group
interface
configuration command.
Preventing the Forwarding of Dynamically Learned Stations
By default, the switch forwards any frames for stations that it has dynamically learned. By disabling this
activity, the switch only forwards frames whose addresses have been statically configured into the
forwarding cache.
Command
Purpose
Step 1
configure terminal
Enters global configuration mode.
Step 2
bridge
bridge-group
protocol
vlan-bridge
Assigns a bridge group number, and specify the VLAN-bridge
spanning-tree protocol to run in the bridge group. The
ibm
and
dec
keywords are not supported.
For
bridge-group
, specify the bridge group number. The range is 1
to 255. You can create up to 31 bridge groups.
Frames are bridged only among interfaces in the same group.
Step 3
interface
interface-id
Enters interface configuration mode, and specify the interface on which
you want to assign the bridge group.
The specified interface must be one of these:
A routed port: a physical port that you have configured as a Layer
3
port by entering the
no switchport
interface configuration
command.
An SVI: a VLAN interface that you created by using the
interface
vlan
vlan-id
global configuration command.
These ports must have IP addresses assigned to them.
Step 4
bridge-group
bridge-group
Assigns the interface to the bridge group created in Step 2.
By default, the interface is not assigned to any bridge group. An
interface can be assigned to only one bridge group.
Step 5
end
Returns to privileged EXEC mode.
Step 6
show running-config
Verifies your entries.
Step 7
copy running-config startup-config
(Optional) Saves your entries in the configuration file.