Lantronix
SM12XPA Web User Guide
33848 Rev. A
Page
212
of
473
Port Security
Configuration
This page lets you configure Port Security settings. You can use the Port Security feature to restrict input to an
interface by limiting and identifying MAC addresses.
To configure Port Security in the web UI:
1.
Click Security, Port Security, and Configuration.
2.
Set the System Configuration section parameters.
3.
Set the Port Configuration section parameters.
4.
Click the Apply button to save the settings.
5.
To cancel the settings click the Reset button. It will revert to previously saved values.
Figure 11-5.1: Port Security Configuration
Parameter descriptions
:
System Configuration
Aging Enabled
: If checked (on), secured MAC addresses are subject to aging as discussed under Aging Period .
Aging Period
: If Aging Enabled is checked (on), then the aging period is controlled with this input. If other
modules are using the underlying functionality for securing MAC addresses, they may have other requirements
to the aging period. The underlying functionality will use the shorter requested aging period of all modules that
have aging enabled.
The Aging Period can be set to a number between 10 and 10000000 seconds with a default of 3600 seconds.
To understand why aging may be desired, consider the following scenario: Suppose an end-host is connected to
a 3rd party switch or hub, which in turn is connected to a port on this switch on which Port Security is enabled.
The end-host will be allowed to forward if the limit is not exceeded. Now suppose that the end-host logs off or
powers down. If it wasn't for aging, the end-host would still take up resources on this switch and will be allowed
to forward. To overcome this situation, enable aging. With aging enabled, a timer is started once the end-host
gets secured. When the timer expires, the switch starts looking for frames from the end-host, and if such frames
are not seen within the next Aging Period, the end-host is assumed to be disconnected, and the corresponding
resources are freed on the switch.