Asus GigaX2024SX User Manual

Page 249

Advertising
background image

enable the learning function long enough to ensure that all valid VLAN
members have been registered on the selected port.

r time, you can manually add secure

addresses with the mac-address-table static command, or turn off port

long enough for new VLAN members

to be registered. Learning may then be disabled again, if desired, for security.
• A secure port has the following restrictions:

5, and sets the response to a

security violation to issue a trap message:

• To add new VLAN members at a late

security to re-enable the learning function

- Cannot use port monitoring.
- Cannot be a multi-VLAN port.
- Cannot be connected to a network interconnection device.
- Cannot be a trunk port.
• If a port is disabled due to a security violation, it must be manually re-enabled
using the no shutdown command.

Example
The following example enables port security for port

Related Commands

shutdown (4-151)
mac-address-table static (4-179)
show mac-address-table (4-181)

802.1x Port Authentication
The switch supports IEEE 802.1x (dot1x) port-based access control that prevents
unauthorized access to the network by requiring users to first submit credentials
for authentication. Client authentication is controlled centrally by a RADIUS server
using EAP (Extensible Authentication Protocol).

4-81

Advertising