Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual
Page 10
x
Multi-Service IronWare Security Configuration Guide
53-1003035-02
Displaying multi-device port authentication information . . . . . . . .279
Displaying authenticated MAC address information . . . . . . . .279
Displaying multi-device port authentication configuration information
280
Displaying multi-device port authentication information for a specific
MAC address or port . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .282
Displaying the authenticated MAC addresses . . . . . . . . . . . . .283
Displaying the non-authenticated MAC addresses . . . . . . . . .283
Using the MAC Port Security Feature
Overview . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .285
Local and global resources . . . . . . . . . . . . . . . . . . . . . . . . . . . .286
Configuring the MAC port security feature . . . . . . . . . . . . . . . . . . .286
Enabling the MAC port security feature . . . . . . . . . . . . . . . . . .287
Setting the maximum number of secure MAC addresses for an
interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .287
Setting the port security age timer . . . . . . . . . . . . . . . . . . . . . .287
Specifying secure MAC addresses . . . . . . . . . . . . . . . . . . . . . .288
Autosaving secure MAC addresses to the startup-config file .288
Setting to delete a dynamically learned MAC address on
a disabled interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .288
Specifying the action taken when a security violation
occurs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .289
Denying specific MAC addresses . . . . . . . . . . . . . . . . . . . . . . .289
Port security MAC violation limit . . . . . . . . . . . . . . . . . . . . . . . .290
Displaying port security information . . . . . . . . . . . . . . . . . . . . . . . .292
Displaying port security settings . . . . . . . . . . . . . . . . . . . . . . . .292
Displaying the secure MAC addresses on the device . . . . . . .293
Displaying port security statistics . . . . . . . . . . . . . . . . . . . . . . .293
Configuring 802.1x Port Security
Overview of 802.1x port security . . . . . . . . . . . . . . . . . . . . . . . . . . .296
IETF RFC support . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .296
How 802.1x port security works. . . . . . . . . . . . . . . . . . . . . . . . . . . .297
Device roles in an 802.1x configuration . . . . . . . . . . . . . . . . .297
Communication between the devices . . . . . . . . . . . . . . . . . . .298
Controlled and uncontrolled ports . . . . . . . . . . . . . . . . . . . . . .299
Message exchange during authentication . . . . . . . . . . . . . . . .300
Authenticating multiple clients connected to
the same port. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .301
802.1x port security and sFlow . . . . . . . . . . . . . . . . . . . . . . . . . . . .303