Solved

Port security on Catalyst 3560 switch.

Posted on 2010-08-26
3
627 Views
Last Modified: 2012-05-10
I have a Catalyst 3560 switch. I want to block a port to only allow traffic from 1 MAC address. How do I do this?
0
Comment
Question by:neptuneit
3 Comments
 
LVL 3

Expert Comment

by:Shaun
ID: 33533295
0
 
LVL 17

Expert Comment

by:Kvistofta
ID: 33533739
interface FastEthernet0/4
 switchport mode access
 switchport port-security
 switchport port-security maximum 1

end


/Kvistofta
0
 
LVL 9

Accepted Solution

by:
ffleisma earned 500 total points
ID: 33540589
Switch(config)#interface FastEthernet X/X
Switch(config-if)#switchport mode access
Switch(config-if)#switchport port-security
Switch(config-if)#switchport port-security maximum 1
Switch(config-if)#switchport port-security mac-address 0006.5b02.a841
Switch(config-if)# switchport port-security violation {shutdown | restrict | protect}

shutdown - port goes to err-disable
restrict - port stays up but packets are droped and can send SNMP trap and syslog
protect - port stays up but packets are droped, no record is kept or syslog message sent

you can also try
Switch(config-if)#switchport port-security mac-address sticky
instead of
Switch(config-if)#switchport port-security mac-address
command.

with sticky option, the switch gets and stores the mac-address of the first device you plug-in

hope this helps :-)
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This tutorial will go through the steps required to write a script that will back up the configuration settings of a HP-ProCurve switch. You will need to get the following things to follow this tutorial: Telnet Scripting Tool e.g. TST10.exe …
I eventually solved a perplexing problem setting up telnet for a new switch.  I installed a new Cisco WS-03560X-24P switch connected to an existing Cisco 4506 running a WS-X4013-10GE Sup II-Plus. After configuring vlans and trunking,  I could no…
When you create an app prototype with Adobe XD, you can insert system screens -- sharing or Control Center, for example -- with just a few clicks. This video shows you how. You can take the full course on Experts Exchange at http://bit.ly/XDcourse.
Need to grow your business through quality cloud solutions? With everything required to build a cloud platform and solution, you may feel like the distance between you and the cloud is quite long. Help is here. Spend some time learning about the Con…

930 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now