Page 206 / 400 Scroll up to view Page 201 - 205
User Manual for the NETGEAR 7300S Series Layer 3 Managed Switch Software
8-138
Switching Commands
202-10088-01, March 2005
If 0 (defined as the default CIST ID) is passed as the <mstid>, then this command displays the
settings and parameters for a specific switch port within the common and internal spanning tree.
The <slot/port> is the desired switch port. In this case, the following are displayed.
Port Identifier
The port identifier for this port within the CST.
Port Priority
The priority of the port within the CST.
Port Forwarding State
The forwarding state of the port within the CST.
Port Role
The role of the specified interface within the CST.
Port Path Cost
The configured path cost for the specified interface.
Designated Root
Identifier of the designated root for this port within the CST.
Designated Port Cost
Path Cost offered to the LAN by the Designated Port.
Designated Bridge
The bridge containing the designated port
Designated Port Identifier
Port on the Designated Bridge that offers the lowest cost to
the LAN
Topology Change Acknowledgement
Value of flag in next Configuration Bridge Pro-
tocol Data Unit (BPDU) transmission indicating if a topology
change is in progress for this port.
Hello Time
The hello time in use for this port.
Edge Port
The configured value indicating if this port is an edge port.
Edge Port Status
The derived value of the edge port status.
True if operating as an
edge port; false otherwise.
Point To Point MAC Status
Derived value indicating if this port is part of a point to
point link
.
CST Regional Root
The regional root identifier in use for this port.
CST Port Cost
The configured path cost for this port.
Page 207 / 400
User Manual for the NETGEAR 7300S Series Layer 3 Managed Switch Software
Security Commands
9-1
202-10088-01, March 2005
Chapter 9
Security Commands
This section provides a detailed explanation of the Security commands. The commands are
divided into the following groups:
Configuration commands are used to configure features and options of the switch. For every
configuration command there is a show command that will display the configuration setting.
Show commands are used to display switch settings, statistics and other information.
Port Security
This section provides a detailed explanation of the Port Security commands. The commands are
divided into the following groups:
Configuration commands are used to configure features and options of the switch. For every
configuration command there is a show command that will display the configuration setting.
Show commands are used to display switch settings, statistics and other information.
port-security
This command enables port locking at the system level (Global Config) or port level (Interface
Config)
Default
Disabled
Format
port-security
Modes
Global Config
Interface Config
no port-security
This command disables port locking at the system level (Global Config) or port level (Interface
Config).
Format
no port-security
Page 208 / 400
User Manual for the NETGEAR 7300S Series Layer 3 Managed Switch Software
9-2
Security Commands
202-10088-01, March 2005
Modes
Global Config
Interface Config
port-security max-dynamic
This command sets the maximum of dynamically locked MAC addresses allowed on a specific
port.
Default
600
Format
port-security max-dynamic <maxvalue>
Mode
Interface Config
no port-security max-dynamic
This command resets the maximum of dynamically locked MAC addresses allowed on a specific
port to its default value.
Format
no port-security max-dynamic
Mode
Interface Config
port-security max-static
This command sets the maximum number of statically locked MAC addresses allowed on a
specific port.
Default
20
Format
port-security max-static <maxvalue>
Mode
Interface Config
no port-security max-static
This command resets the maximum of statically locked MAC addresses allowed on a specific port
to its default value.
Format
no port-security max-static
Mode
Interface Config
Page 209 / 400
User Manual for the NETGEAR 7300S Series Layer 3 Managed Switch Software
Security Commands
9-3
202-10088-01, March 2005
port-security mac-address
This command adds a MAC address to the list of statically locked MAC addresses.
Format
port-security mac-address <vid> <mac-address>
Mode
Interface Config
no port-security mac-address
This command removes a MAC address to the list of statically locked MAC addresses.
Format
no port-security mac-address <vid> <mac-address>
Mode
Interface Config
port-security mac-address move
This command converts dynamically locked MAC addresses to statically locked addresses.
Format
port-security mac-address move
Mode
Interface Config
snmp-server enable traps violation
This command enables the sending of new violation traps designating when a packet with a
disallowed MAC address is received on a locked port.
Default
Disabled
Format
snmp-server enable traps violation
Mode
Interface Config
no snmp-server enable traps violation
This command disables the sending of new violation traps.
Format
no snmp-server enable traps violation
Mode
Interface Config
Page 210 / 400
User Manual for the NETGEAR 7300S Series Layer 3 Managed Switch Software
9-4
Security Commands
202-10088-01, March 2005
show port-security
This command displays the port-security settings for the entire system.
Format
show port-security
Mode
Privileged EXEC
Admin Mode
Port Locking mode for the entire system
show port-security
This command displays the port-security settings for a particular interface or all interfaces.
Format
show port-security <interface | all>
Mode
Privileged EXEC
Interface Admin Mode
Port Locking mode for the Interface.
Dynamic Limit
Maximum dynamically allocated MAC Addresses.
Static Limit
Maximum statically allocated MAC Addresses.
Violation Trap Mode
Whether violation traps are enabled.
show port-security dynamic
This command displays the dynamically locked MAC addresses for port.
Format
show port-security dynamic <interface>
Mode
Privileged EXEC
MAC Address
MAC Address of dynamically locked MAC.
show port-security static
This command displays the statically locked MAC addresses for port.
Format
show port-security static <interface>
Mode
Privileged EXEC
MAC Address
MAC Address of statically locked MAC.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top