Netgear GS516TP Software Administration Manual - Page 133

Port Security Interface Configuration, Security MAC Address

Page 133 highlights

GS516TP Gigabit Smart Switches Port Security Interface Configuration A MAC address can be defined as allowable dynamically. Dynamic locking implements a first arrival mechanism for port security. You specify how many addresses can be learned on the locked port. If the limit has not been reached, a packet with an unknown source MAC address is learned and forwarded normally. When the limit is reached, no more addresses are learned on the port. Any packets with source MAC addresses that were not already learned are discarded. You can effectively disable dynamic locking by setting the number of allowable dynamic entries to 0.  To configure port security settings: 1. Select Security > Traffic Control > Port Security > Interface Configuration. 2. To configure interface security settings for ports and link aggregation groups (LAGs), click PORTS, LAGS, or All. 3. Select the check box next to the port or LAG to configure. Select multiple check boxes to apply the same setting to all selected interfaces. Select the check box in the heading row to apply the same settings to all interfaces. 4. Specify the following settings: • Port Security. Enable or disable the port security feature for the selected port. • Max Allowed Dynamically Learned MAC. Sets the maximum number of dynamically learned MAC addresses on the selected interface. The valid range is 0-600. The default value is 600. • Enable Violation Traps. Select Yes or No to enable or disable the sending of new violation traps designating when a packet with a disallowed MAC address is received on a locked port. 5. Click APPLY to update the switch with the new settings. Security MAC Address Use the Security MAC Address screen to convert a dynamically learned MAC address to a statically locked address.  To convert learned MAC addresses: 1. Select Security > Traffic Control > Port Security > Security MAC Address. 2. Select the Convert Dynamic Address to Static check box. 3. Click APPLY.  The dynamic MAC Address entries are converted to static MAC address entries in a numerically ascending order until the static limit is reached. The Dynamic MAC Addresses Table section shows the MAC addresses and their associated VLANs learned on the selected port. Use the Port List menu to select the port for which you want to display data. Table 26 describes the dynamic MAC addresses table fields. 133

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208

133
GS516TP Gigabit Smart Switches
Port Security Interface Configuration
A MAC address can be defined as allowable dynamically.
Dynamic locking implements a first arrival mechanism for port security. You specify how
many addresses can be learned on the locked port. If the limit has not been reached, a
packet with an unknown source MAC address is learned and forwarded normally. When the
limit is reached, no more addresses are learned on the port. Any packets with source MAC
addresses that were not already learned are discarded. You can effectively disable dynamic
locking by setting the number of allowable dynamic entries to 0.
To configure port security settings:
1.
Select
Security > Traffic Control > Port Security > Interface Configuration
.
2.
To configure interface security settings for ports and link aggregation groups (LAGs), click
PORTS
,
LAGS
, or
All
.
3.
Select the check box next to the port or LAG to configure. Select multiple check boxes to
apply the same setting to all selected interfaces. Select the check box in the heading row to
apply the same settings to all interfaces.
4.
Specify the following settings:
Port Security
. Enable or disable the port security feature for the selected port.
Max Allowed Dynamically Learned MAC
. Sets the maximum number of
dynamically learned MAC addresses on the selected interface. The valid range is
0–600. The default value is 600.
Enable Violation Traps
. Select Yes or No to enable or disable the sending of new
violation traps designating when a packet with a disallowed MAC address is received
on a locked port.
5.
Click
APPLY
to update the switch with the new settings.
Security MAC Address
Use the Security MAC Address screen to convert a dynamically learned MAC address to a
statically locked address.
To convert learned MAC addresses:
1.
Select
Security > Traffic Control > Port Security > Security MAC Address
.
2.
Select the Convert Dynamic Address to Static check box.
3.
Click
APPLY
.
The dynamic MAC Address entries are converted to static MAC address entries in a
numerically ascending order until the static limit is reached.
The Dynamic MAC Addresses Table section shows the MAC addresses and their associated
VLANs learned on the selected port. Use the Port List menu to select the port for which you
want to display data.
Table 26
describes the dynamic MAC addresses table fields.