cisco交换机收集到的日志如下
C4K_L2MAN-6-INVALIDSOURCEADDRESSPACKET: (Suppressed 3 times)Packet received with invalid source MAC address (00:00:00:00:00:00) on port Gi2/3 in vlan 1
查找相关资料,初步的解决方法是使用如下的命令:
switchport port-security limit rate invalid-source-mac <rate>
The command "switchport port-security limit rate invalid-source-mac" limits invalid source MAC address on a security port based on the pps (packets per second) value you configure
这条命令是限制无效源MAC地址每秒通过的数量,这个数量值是你所设置的(在端口模式下使用)
有些文档说不能再trunk口下使用这个命令,但是在实际操作中可以使用这个命令,也没有报错,等待最后的测试效果。
The default value is 10 pps. For example the below would limit packets from invalid source MAC address to 100 pps
默认值是10 例:如果你想限制无效的源MAC地址为100pps,命令如下:
switchport port-security limit rate invalid-source-mac 100
If you would like to verify, you may try setting the pps to '0' in which case the switch would deny all invalid source MAC address packet.
如果设置成0,交换机将禁止所有的无效源MAC地址数据包通过
switchport po