Previous page Next page

Configuring MAC Address Lock and Intrusion Detection

Overview

The MAC Address Lock feature filters frames that do not match the static MAC address that is assigned to a port. If you enable MAC Address Lock, you can also enable Intrusion Detection, which generates trap messages that identify intruding (unknown) source addresses.

The switch stores a history of 64 intruding source MAC addresses in a software buffer. One intruding source MAC address is stored and one trap message is generated per the intrusion trap timer setting. Once a MAC address is stored and the trap is generated, the switch does not send another trap for the address until it is cleared from the buffer.

Note: The default setting for the intrusion trap timer is 1800 seconds (30 minutes). The valid range for the timer is 60 to 1800 seconds.


Previous page Next page