Network-access aging – Brocade Communications Systems Brocate Ethernet Access Switch 6910 User Manual

Page 248

Advertising
background image

198

Brocade 6910 Ethernet Access Switch Configuration Guide

53-1002581-01

Network Access (MAC Address Authentication)

10

network-access aging

Use this command to enable aging for authenticated MAC addresses stored in the secure MAC
address table. Use the no form of this command to disable address aging.

Syntax

[no] network-access aging

Default Setting

Disabled

Command Mode

Global Configuration

Command Usage

Authenticated MAC addresses are stored as dynamic entries in the switch’s secure MAC
address table and are removed when the aging time expires. The address aging time is
determined by the

mac-address-table aging-time

command.

This parameter applies to authenticated MAC addresses configured by the MAC Address
Authentication process described in this section, as well as to any secure MAC addresses
authenticated by 802.1X, regardless of the 802.1X Operation Mode (Single-Host, Multi-Host, or
MAC-Based authentication as described on

page 179

).

The maximum number of secure MAC addresses supported for the switch system is 1024.

Example

Console(config-if)#network-access aging

Console(config-if)#

network-access mode
mac-authentication

Enables MAC authentication on an interface

IC

network-access port-mac-filter

Enables the specified MAC address filter

IC

mac- authentication
intrusion-action

Determines the port response when a connected host fails MAC
authentication.

IC

mac- authentication
max-mac-count

Sets the maximum number of MAC addresses that can be
authenticated on a port via MAC authentication

IC

clear network-access

Clears authenticated MAC addresses from the address table

PE

show network-access

Displays the MAC authentication settings for port interfaces

PE

show network-access
mac-address- table

Displays information for entries in the secure MAC address table

PE

show network-access mac-filter

Displays information for entries in the MAC filter tables

PE

TABLE 50

Network Access Commands (Continued)

Command

Function

Mode

Advertising