Solved

Port security on Catalyst 3560 switch.

Posted on 2010-08-26
3
617 Views
Last Modified: 2012-05-10
I have a Catalyst 3560 switch. I want to block a port to only allow traffic from 1 MAC address. How do I do this?
0
Comment
Question by:neptuneit
3 Comments
 
LVL 3

Expert Comment

by:Shaun
ID: 33533295
0
 
LVL 17

Expert Comment

by:Kvistofta
ID: 33533739
interface FastEthernet0/4
 switchport mode access
 switchport port-security
 switchport port-security maximum 1

end


/Kvistofta
0
 
LVL 9

Accepted Solution

by:
ffleisma earned 500 total points
ID: 33540589
Switch(config)#interface FastEthernet X/X
Switch(config-if)#switchport mode access
Switch(config-if)#switchport port-security
Switch(config-if)#switchport port-security maximum 1
Switch(config-if)#switchport port-security mac-address 0006.5b02.a841
Switch(config-if)# switchport port-security violation {shutdown | restrict | protect}

shutdown - port goes to err-disable
restrict - port stays up but packets are droped and can send SNMP trap and syslog
protect - port stays up but packets are droped, no record is kept or syslog message sent

you can also try
Switch(config-if)#switchport port-security mac-address sticky
instead of
Switch(config-if)#switchport port-security mac-address
command.

with sticky option, the switch gets and stores the mac-address of the first device you plug-in

hope this helps :-)
0

Featured Post

What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

Join & Write a Comment

Suggested Solutions

The worst thing when starting a new job is when the previous Network Administrator left behind no documentation. How do you get into the devices? If you've been in this situation or just accidently mistyped your password, this article will hopefully…
I see many questions here on Experts Exchange regarding switch port configurations and trunks. This article is meant for beginners in the subject to help to get basic knowledge about Virtual Local Area Network (VLAN (http://en.wikipedia.org/wiki/Vir…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now