Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Webcast-Catalyst9k
New Member

will this config work for 3550?

Hi all,

I want to setup port-security feature for 3550. I want to limit a ethernet port to permit 10 mac-address but 1 mac-address x.x.x I want to permanently permit. Can I config like this?

int f0/24

switchport port-security

switchport port-security mac-address x.x.x

switchport port-security maxium 10

switchport port-security aging time 2

switchport port-security aging type inactive

no shut

And Can I explicity deny 1 mac-address? Can anybody give me idea? Thank You!

Best Regards

Teru Lei

1 REPLY
Bronze

Re: will this config work for 3550?

I think your configuration is fine for permitting a specific machine and a total of 10 machines. I don't think you can deny someone explicity using the port security feature, but you can achieve this by using port ACLs where you can apply either IP or Extended MAC address lists to layer2 switch ports.This link should help you :

http://www.cisco.com/univercd/cc/td/doc/product/lan/c3550/12112cea/3550scg/swacl.htm#xtocid4

93
Views
0
Helpful
1
Replies
CreatePlease to create content