HP 6125XLG R2306-HP 6125XLG Blade Switch Security Configuration Guide - Page 109

The port also allows one user whose MAC address has an OUI among the specified OUIs to pass

Page 109 highlights

[Device] display domain sun Domain:sun State: Active Access-limit: Disabled Access-Count: 0 lan-access Authentication Scheme: radius: radsun lan-access Authorization Scheme: radius: radsun lan-access Accounting Scheme: radius: radsun default Authentication Scheme: local default Authorization Scheme: local default Accounting Scheme: local # Display the port security configuration. [Device] display port-security interface ten-gigabitethernet 1/1/5 Port security is enabled globally AutoLearn aging time is 0 minutes Disableport Timeout: 20s OUI value: Index is 1, OUI value is 123401 Index is 2, OUI value is 123402 Index is 3, OUI value is 123403 Index is 4, OUI value is 123404 Index is 5, OUI value is 123405 Ten-GigabitEthernet1/1/5 is link-up Port mode : userLoginWithOUI NeedToKnow mode: Disabled Intrusion protection mode: NoAction Max number of secure MAC addresses: Not configured Current number of secure MAC addresses: 1 Authorization is permitted After an 802.1X user goes online, you can see that the number of secure MAC addresses saved by the port is 1. You can use the display dot1x command to display information about online 802.1X users. The port also allows one user whose MAC address has an OUI among the specified OUIs to pass authentication. You can use the following command to display the MAC address information for the port: [Device] display mac-address interface ten-gigabitethernet 1/1/5 MAC Address VLAN ID State Port/NickName Aging 1234-0300-0011 1 Learned Ten-GigabitEthernet1/1/5 Y 100

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276

100
[Device] display domain sun
Domain:sun
State: Active
Access-limit: Disabled
Access-Count: 0
lan-access Authentication Scheme:
radius: radsun
lan-access Authorization
Scheme:
radius: radsun
lan-access Accounting
Scheme:
radius: radsun
default Authentication Scheme:
local
default Authorization
Scheme:
local
default Accounting
Scheme:
local
# Display the port security configuration.
[Device] display port-security interface ten-gigabitethernet 1/1/5
Port security is enabled globally
AutoLearn aging time is 0 minutes
Disableport Timeout: 20s
OUI value:
Index is 1,
OUI value is 123401
Index is 2,
OUI value is 123402
Index is 3,
OUI value is 123403
Index is 4,
OUI value is 123404
Index is 5,
OUI value is 123405
Ten-GigabitEthernet1/1/5 is link-up
Port mode : userLoginWithOUI
NeedToKnow mode: Disabled
Intrusion protection mode: NoAction
Max number of secure MAC addresses: Not configured
Current number of secure MAC addresses: 1
Authorization is permitted
After an 802.1X user goes online, you can see that the number of secure MAC addresses saved by the
port is 1. You can use the
display dot1x
command to display information about online 802.1X users.
The port also allows one user whose MAC address has an OUI among the specified OUIs to pass
authentication. You can use the following command to display the MAC address information for the port:
[Device] display mac-address interface ten-gigabitethernet 1/1/5
MAC Address
VLAN ID
State
Port/NickName
Aging
1234-0300-0011
1
Learned
Ten-GigabitEthernet1/1/5
Y