13.02.2014 Views

CLI Guide - TP-Link

CLI Guide - TP-Link

CLI Guide - TP-Link

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

TL-SL3428/TL-SL3452 JetStream L2 Managed Switch <strong>CLI</strong> <strong>Guide</strong><br />

Chapter 17 Address Commands<br />

Address configuration can improve the network security by configuring the Port Security and<br />

maintaining the address information by managing the Address Table.<br />

bridge address port-security<br />

Description<br />

The bridge address port-security command is used to configure port security.<br />

To return to the default configuration, please use no bridge address<br />

port-security command. Port Security is to protect the switch from the<br />

malicious MAC address attack by limiting the maximum number of the MAC<br />

addresses that can be learned on the port. The port with Port Security feature<br />

enabled will learned the MAC address dynamically. When the learned MAC<br />

address number reaches the maximum, the port will stop learning. Therefore,<br />

the other devices with the MAC address unlearned can not access to the<br />

network via this port.<br />

Syntax<br />

bridge address port-security [max-number {num}] [ mode {dynamic | static |<br />

permanent} ] [ status {disable | enable} ]<br />

no bridge address port-security<br />

Parameter<br />

num —— The maximum number of MAC addresses that can be learned on the<br />

port. It ranges from 0 to 64. By default this value is 64.<br />

mode —— Learn mode for MAC addresses. There are three modes, including<br />

Dynamic mode, Static mode and Permanent mode. When Dynamic mode is<br />

selected, the learned MAC address will be deleted automatically after the aging<br />

time. When Static mode is selected, the learned MAC address will be out of the<br />

influence of the aging time and can only be deleted manually. The learned<br />

entries will be cleared after the switch is rebooted. When permanent mode is<br />

selected, the learned MAC address will be out of the influence of the aging time<br />

and can only be deleted manually too. However, the learned entries will be<br />

saved even the switch is rebooted.<br />

status —— Enable or disable the Port Security function for a specified port. By<br />

default, this function is disabled.<br />

93

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!