Cisco SR224T Administration Guide - Page 238

Configuring Port Security, Interface, Storm Control, Storm Control Rate Threshold, Apply, Classic Lock

Page 238 highlights

Configuring Security Configuring Port Security 17 • Interface-Select the port for which storm control is enabled. • Storm Control-Select to enable Storm Control. • Storm Control Rate Threshold-Enter the maximum rate at which unknown packets can be forwarded. The default for this threshold is 10,000 for FE devices and 100,000 for GE devices. • Storm Control Mode-Select one of the modes: - Unknown Unicast, Multicast & Broadcast-Counts unknown Unicast, Broadcast, and Multicast traffic towards the bandwidth threshold. - Multicast & Broadcast-Counts Broadcast and Multicast traffic towards the bandwidth threshold. - Broadcast Only-Counts only Broadcast traffic towards the bandwidth threshold. STEP 4 Click Apply. Storm control is modified, and the Running Configuration file is updated. Configuring Port Security Network security can be increased by limiting access on a port to users with specific MAC addresses. The MAC addresses can be either dynamically learned or statically configured. Port security monitors received and learned packets. Access to locked ports is limited to users with specific MAC addresses. Port Security has four modes: • Classic Lock-All learned MAC addresses on the port are locked, and the port does not learn any new MAC addresses. The learned addresses are not subject to aging or re-learning. • Limited Dynamic Lock-The switch learns MAC addresses up to the configured limit of allowed addresses. After the limit is reached, the switch does not learn additional addresses. In this mode, the addresses are subject to aging and re-learning. • Secure Permanent-Keeps the current dynamic MAC addresses associated with the port and learns up to the maximum number of Cisco Small Business 200 Series Smart Switch Administration Guide 239

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283

Configuring Security
Configuring Port Security
Cisco Small Business 200 Series Smart Switch Administration Guide
239
17
Interface
—Select the port for which storm control is enabled.
Storm Control
—Select to enable Storm Control.
Storm Control Rate Threshold
—Enter the maximum rate at which unknown
packets can be forwarded. The default for this threshold is 10,000 for FE
devices and 100,000 for GE devices.
Storm Control Mode
—Select one of the modes:
-
Unknown Unicast, Multicast & Broadcast
—Counts unknown Unicast,
Broadcast, and Multicast traffic towards the bandwidth threshold.
-
Multicast & Broadcast
—Counts Broadcast and Multicast traffic towards
the bandwidth threshold.
-
Broadcast Only
—Counts only Broadcast traffic towards the bandwidth
threshold.
STEP
4
Click
Apply
. Storm control is modified, and the Running Configuration file is
updated.
Configuring Port Security
Network security can be increased by limiting access on a port to users with
specific MAC addresses. The MAC addresses can be either dynamically learned
or statically configured.
Port security monitors received and learned packets. Access to locked ports is
limited to users with specific MAC addresses.
Port Security has four modes:
Classic Lock
—All learned MAC addresses on the port are locked, and the
port does not learn any new MAC addresses. The learned addresses are
not subject to aging or re-learning.
Limited Dynamic Lock
—The switch learns MAC addresses up to the
configured limit of allowed addresses. After the limit is reached, the switch
does not learn additional addresses. In this mode, the addresses are
subject to aging and re-learning.
Secure Permanent
—Keeps the current dynamic MAC addresses
associated with the port and learns up to the maximum number of