T2600G/Security/Port Security: Unterschied zwischen den Versionen

Aus Foxwiki
(Die Seite wurde neu angelegt: „ Kategorie:T2600G:Security“)
 
Keine Bearbeitungszusammenfassung
Zeile 1: Zeile 1:


[[Kategorie:T2600G:Security]]
[[Kategorie:T2600G:Security]]
You can limit the number of MAC addresses that can be learned on each port on this page, thus preventing the MAC address table from being exhausted by the attack packets.
==== Port Security ====
; Port
: Select one or more ports to configure.
; Max Learned Number of MAC
: Specify the maximum number of MAC addresses that can be learned on the port. When the learned MAC address number reaches the limit, the port will stop learning.
; Current Learned Number
: Displays the number of MAC addresses that have been learned on the port.
; Exceed Max Learned Trap
: Enable Exceed Max Learned Trap, and when the maximum number of learned MAC addresses on the specified port is exceeded, a notification will be generated and sent to the management host.
; Learn Address Mode
: Select the learn mode of the MAC addresses on the port. Three modes are provided:
; Delete on Timeout
: The switch will delete the MAC addresses that are not used or updated within the aging time. It is the default setting.
; Delete on Reboot
: The learned MAC addresses are out of the influence of the aging time and can only be deleted manually. The learned entries will be cleared after the switch is rebooted.
; Permanent
: The learned MAC addresses are out of the influence of the aging time and can only be deleted manually. The learned entries will be saved even the switch is rebooted.
; Status
: Select the status of Port Security. Three kinds of status can be selected.
; Forward
: When the number of learned MAC addresses reaches the limit, the port will stop learning but send the packets with the MAC addresses that have not been learned.
; Drop
: When the number of learned MAC addresses reaches the limit, the port will stop learning and discard the packets with the MAC addresses that have not been learned.
; Disable
: The number limit on the port is not effective, and the switch follows the original forwarding rules. It is the default setting.

Version vom 31. Dezember 2022, 12:11 Uhr


You can limit the number of MAC addresses that can be learned on each port on this page, thus preventing the MAC address table from being exhausted by the attack packets.

Port Security

Port
Select one or more ports to configure.
Max Learned Number of MAC
Specify the maximum number of MAC addresses that can be learned on the port. When the learned MAC address number reaches the limit, the port will stop learning.
Current Learned Number
Displays the number of MAC addresses that have been learned on the port.
Exceed Max Learned Trap
Enable Exceed Max Learned Trap, and when the maximum number of learned MAC addresses on the specified port is exceeded, a notification will be generated and sent to the management host.
Learn Address Mode
Select the learn mode of the MAC addresses on the port. Three modes are provided:
Delete on Timeout
The switch will delete the MAC addresses that are not used or updated within the aging time. It is the default setting.
Delete on Reboot
The learned MAC addresses are out of the influence of the aging time and can only be deleted manually. The learned entries will be cleared after the switch is rebooted.
Permanent
The learned MAC addresses are out of the influence of the aging time and can only be deleted manually. The learned entries will be saved even the switch is rebooted.
Status
Select the status of Port Security. Three kinds of status can be selected.
Forward
When the number of learned MAC addresses reaches the limit, the port will stop learning but send the packets with the MAC addresses that have not been learned.
Drop
When the number of learned MAC addresses reaches the limit, the port will stop learning and discard the packets with the MAC addresses that have not been learned.
Disable
The number limit on the port is not effective, and the switch follows the original forwarding rules. It is the default setting.