[c-nsp] Untagged native VLAN...

Nick Hilliard nick at foobar.org
Tue Nov 23 15:19:53 EST 2010


On 23/11/2010 19:21, Peter Rathlev wrote:
> The best thing would be if one could just limit the number of allowed
> MAC addresses on a port, forcing the port err-disabled if the limit is
> crossed. Whenever I look at port-security it seems to address a lot of
> other "problems", and that tends to complicate implementation. :-|

Limiting MAC addresses was what I was referring to, when I mentioned 
port-security:

>  switchport port-security maximum 1
>  switchport port-security aging time 5
>  switchport port-security violation shutdown

Nick


More information about the cisco-nsp mailing list