We have tried to configure port security allowing only one mac address. The problem we have seen is that multicast mac addresses are taking over that mac address, so now we have opened up for three macaddresses to make multicast work as well. Is this the way it should work??? I have looked but haven´t been able to find anything. Doesn´t feel very secure now.
Are you saying that the MAC the port locks down is a MAC other than the directly connected device? With CISCO I have not seen that happen. With Foundry, when using dynamic VLANS, that can occur. The only thing I could suggest is to try to clear port security, while port security is enabled, and see if it locks in the correct MAC. (which you may have already tried)
We are pleased to announce availability of Beta software for 16.6.3. 16.6.3 will be the second rebuild on the 16.6 release train targeted towards Catalyst 9500/9400/9300/3850/3650 switching platforms. We are looking for early feedback from custome...