Dell PowerConnect 5224 User Manual - Page 18

Port Security, source, MAC address, VLAN

Page 18 highlights

www.dell.com | support.dell.com CLI Commands The following table summarizes the equivalent CLI commands for items in the Switch/Security/HTTPS page. Command ip http secure-server ip http secure-port port_number copy tftp https-certificate Usage Enables the HTTPS server on the switch. The no form command disables the HTTPS server. Specifies the TCP port number used for HTTPS connection to the switch's Web interface. The no form command restores the default port. Copies an HTTPS certificate from an TFTP server to the switch. Example Console(config)#ip http secure-server Console(config)#ip http secure-port 441 Console(config)# Port Security Port security is a feature that allows you to configure a switch port with one or more device Media Access Control (MAC) addresses that are authorized to access the network through that port. When port security is enabled on a port, the switch stops learning new MAC addresses on the specified port. Only incoming traffic with source addresses already stored in the dynamic or static address table are accepted as authorized to access the network through that port. If a device with an unauthorized MAC address attempts to use the switch port, the intrusion is detected and the switch can automatically take action by disabling the port and sending a trap message. To use port security, first allow the switch to dynamically learn the pair for frames received on a port for an initial period, and then enable port security to stop address learning. Be sure you enable the learning function long enough to ensure that all valid VLAN members are registered on the selected port. 18 Addendum to the 32 48 and 5 224 User 's Guides

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42

18
Addendum to the 3248 and 5224 User’s Guides
www.dell.com | support.dell.com
CLI Commands
The following table summarizes the equivalent CLI commands for items in
the
Switch/Security/HTTPS
page.
Example
Console(config)#ip http secure-server
Console(config)#ip http secure-port 441
Console(config)#
Port Security
Port security is a feature that allows you to configure a switch port with one
or more device Media Access Control (MAC) addresses that are authorized
to access the network through that port.
When port security is enabled on a port, the switch stops learning new
MAC addresses on the specified port. Only incoming traffic with source
addresses already stored in the dynamic or static address table are accepted
as authorized to access the network through that port. If a device with an
unauthorized MAC address attempts to use the switch port, the intrusion is
detected and the switch can automatically take action by disabling the port
and sending a trap message.
To use port security, first allow the switch to dynamically learn the <
source
MAC address, VLAN
> pair for frames received on a port for an initial
period, and then enable port security to stop address learning. Be sure you
enable the learning function long enough to ensure that all valid VLAN
members are registered on the selected port.
Command
Usage
ip http secure-server
Enables the HTTPS server on the switch.
The
no
form command disables the HTTPS server.
ip http secure-port
port_number
Specifies the TCP port number used for HTTPS
connection to the switch’s Web interface.
The
no
form command restores the default port.
copy tftp https-certificate
Copies an HTTPS certificate from an TFTP server
to the switch.