2960-24S Lanlite

Unanswered Question
Oct 3rd, 2010

Hi All,

I have to suggest MAC based security on 2960-24S lanlite switches, kindly suggest is it possible on 2960-24S, if yes how can i  do,kindly forward if a document is available on this

Regards

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
rahurao Mon, 10/04/2010 - 00:25

Hi Ayancomputer,

The mac based security is supported on the lan lite 2960S. You can use the port security feature to restrict input to an interface by limiting and identifying MAC addresses of the stations allowed to access the port. When you assign secure MAC addresses to a secure port, the port does not forward packets with source addresses outside the group of defined addresses. If you limit the number of secure MAC addresses to one and assign a single secure MAC address, the workstation attached to that port is assured the full bandwidth of the port.

If a port is configured as a secure port and the maximum number of secure MAC addresses is reached, when the MAC address of a station attempting to access the port is different from any of the identified secure MAC addresses, a security violation occurs. Also, if a station with a secure MAC address configured or learned on one secure port attempts to access another secure port, a violation is flagged.

Here is the link as requested:

http://www.cisco.com/en/US/partner/docs/switches/lan/catalyst2960/software/release/12.2_37_ey/configuration/guide/swtrafc.html#wp1038501

HTH

Rahul

Actions

This Discussion