EasyManuals Logo
Home>Cisco>Network Router>Catalyst 3550 Series

Cisco Catalyst 3550 Series User Manual

Cisco Catalyst 3550 Series
992 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #458 background imageLoading...
Page #458 background image
21-10
Catalyst 3550 Multilayer Switch Software Configuration Guide
78-11194-09
Chapter 21 Configuring Port-Based Traffic Control
Configuring Port Security
Default Port Security Configuration
Table 21-2 shows the default port security configuration for an interface.
Port Security Configuration Guidelines
Follow these guidelines when configuring port security:
• Port security can only be configured on static access ports, trunk ports, or 802.1Q tunnel ports.
• A secure port cannot be a dynamic access port.
• A secure port cannot be a destination port for Switched Port Analyzer (SPAN).
• A secure port cannot belong to a Fast EtherChannel or Gigabit EtherChannel port group.
• You cannot configure static secure or sticky secure MAC addresses on a voice VLAN.
• When you enable port security on an interface that is also configured with a voice VLAN, you must
set the maximum allowed secure addresses on the port to at least two.
• If any type of port security is enabled on the access VLAN, dynamic port security is automatically
enabled on the voice VLAN.
• When a voice VLAN is configured on a secure port that is also configured as a sticky secure port,
all addresses seen on the voice VLAN are learned as dynamic secure addresses, and all addresses
seen on the access VLAN (to which the port belongs) are learned as sticky secure addresses.
• The switch does not support port security aging of sticky secure MAC addresses.
• The protect and restrict options cannot be simultaneously enabled on an interface.
Table 21-2 Default Port Security Configuration
Feature Default Setting
Port security Disabled.
Maximum number of secure MAC addresses One.
Violation mode Shutdown.
Sticky address learning Disabled.
Port security aging Disabled. Aging time is 0. When enabled, the default
type is absolute.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco Catalyst 3550 Series and is the answer not in the manual?

Cisco Catalyst 3550 Series Specifications

General IconGeneral
BrandCisco
ModelCatalyst 3550 Series
CategoryNetwork Router
LanguageEnglish

Related product manuals