switchport port-security LOGGING

From: null void (nullv0idmain@yahoo.com)
Date: Tue Feb 01 2005 - 18:35:09 GMT-3


I understand the concept of sticky keyword when using switchport port-security... It permits you to learn mac addresses on that given broadcast domain / vlan automagically and puts them to your running-config ... So if you did a wri mem and the router reloaded those same mac addresses would be there after the reload .. Is this accurate ??? Then there is what to do if say your maximum allowed mac address configuration is execeded , do you know if one of these methods would log to buffer so that if you reloaded the information pertaning to if any violations occured would be in that log... Say I had the following:
 
int f0/12
   switchport mode access
   switchport port-security
   switchport port-security maximum 4
   switchport port-security mac-address sticky
   switchport port-security violation
 
Say this is applied to int fast0/12 of both R1 and R2's lan interfaces and they are running hsrp , with sticky will it 1 permit the hsrp well known mac and count this as 1 of the mac addresses so now I have used 3 of my mac addressess 1 for hsrp active well known mac address and 1 each for R1 and R2's lan ethernet interfaces .... So now if I write mem then reload and say a violation occured before I reloaded would I see the violation in local buffer logging if enabled and my previously learned mac addresses are still in use ??



This archive was generated by hypermail 2.1.4 : Thu Mar 03 2005 - 08:51:15 GMT-3