锐捷的端口安全的配置
switchport port-security /启用端口安全
switchport port-security maximum 5 /最大学习数量为5
switchport port-security violation shutdown /达到条件后将端口shutdown
switchport port-security binding 192.168.10.1 /静态绑定ip地址
switchport port-security static /启用静态的老化时间
switchport port-security aging time 100 /设置老化时间为100
switchport port-security mac-address 144f.d7c0.79c3 vlan 2 /如不配VLAN,默认为接口VLAN
全局模式配置
int g 0/1
sw a vlan 2
sw port-security maximum 1
sw port-security
switch port-security int g 0/1 mac-address 144f.d722.2222 全局模式下绑定
开启动态学习
sw port-se mac-add sticky /开启二层安全地址动态学习功能
三层的安全配置
int g 0/1
sw port-se
sw acss vlan 2
sw port-se binding 192.168.10.1
sw port-se max 1
sw port-se binding 144f.2222.3333 vlan 2 192.168.10.1
show port-se address /查看当前配置的所有安全地址
show port-security binding /查看当前所有的安全绑定
show port-security all /查看所有生效的端口安全地址和端口安全绑定记录
show port-security interface gi 0/2 /查看某接口上的端口安全配置情况
show port-security /查看端口安全的统计信息