beautypg.com

Mac-authentication intrusion-action, Mac-authentication max-mac-count – Accton Technology Edge-corE Fast Ethernet Switch ES3528M-SFP User Manual

Page 419

background image

Authentication Commands

4-123

4

count - The maximum number of authenticated MAC addresses allowed.
(Range: 1 to 2048; 0 for unlimited)

Default Setting

2048

Command Mode

Interface Configuration

Command Usage

The maximum number of MAC addresses per port is 2048, and the maximum
number of secure MAC addresses supported for the switch system is 1024.
When the limit is reached, all new MAC addresses are treated as
authentication failed.

Example

mac-authentication intrusion-action

Use this command to configure the port response to a host MAC authentication
failure. Use the no form of this command to restore the default.

Syntax

mac-authentication intrusion-action [block traffic | pass traffic]
no mac-authentication intrusion-action

Default Setting

Block Traffic

Command Mode

Interface Config

Example

mac-authentication max-mac-count

Use this command to set the maximum number of MAC addresses that can be
authenticated on a port via 802.1X authentication or MAC authentication. Use the no
form of this command to restore the default.

Syntax

mac-authentication max-mac-count count
no mac-authentication max-mac-count

count - The maximum number of 802.1X and MAC-authenticated MAC
addresses allowed. (Range: 1-1024)

Console(config-if)#network-access max-mac-count 5
Console(config-if)#

Console(config-if)#mac-authentication intrusion-action block-traffic
Console(config-if)#