• February 11, 2012, 09:09:56 AM
Welcome, Guest. Please login or register.
Did you miss your activation email?

Author Topic: Mac security on baystack  (Read 555 times)

0 Members and 1 Guest are viewing this topic.

Offline nnukdead

  • Rookie
  • **
  • Posts: 12
Mac security on baystack
« on: August 30, 2010, 07:01:05 AM »
Hi,

Have some BS450 configured with mac security. Needed to add a new device and once it was attached its mac address naturally appeared in the device manager security violation table. Configured the mac into the Authconfig list ok, it appears in the Authstatus list as ok but is still in the mac violation table ??? If you telnet into the box and look at this table its not there, only in DM ?? tried a CTRL Z in the mac violation table with telnet but no joy.....

How do i get around this issue ? as this device is not allowed on the switch, would re-setting the switch clear the mac violation table in DM ??

Many thanks Chris


Offline nightwatch

  • Full Member
  • ***
  • Posts: 58
Re: Mac security on baystack
« Reply #1 on: August 30, 2010, 07:24:47 AM »
i think you have to clear the violation from the port to allow the device to communicate again.

Offline nnukdead

  • Rookie
  • **
  • Posts: 12
Re: Mac security on baystack
« Reply #2 on: August 30, 2010, 07:33:03 AM »
Thanks for that, sorry for being dumb but what do i need to do exactly........

Offline nightwatch

  • Full Member
  • ***
  • Posts: 58
Re: Mac security on baystack
« Reply #3 on: August 30, 2010, 09:15:53 AM »
try:
mac-security disable port N/N
mac-security enable port N/N

Offline nnukdead

  • Rookie
  • **
  • Posts: 12
Re: Mac security on baystack
« Reply #4 on: August 30, 2010, 09:41:15 AM »
Hi...This BS450-24T is on sw 4.5.1.2 and does not have a CLI option, I have however using the menu system, Switch Configuration, Mac addressed based security disabled/ enabled the offending port but it still appears in the DM Mac violation table but not on the telnet system info.....strange

Offline Michael McNamara

  • Administrator
  • Hero Member
  • *****
  • Posts: 2164
    • Michael McNamara
Re: Mac security on baystack
« Reply #5 on: September 01, 2010, 11:54:10 AM »
I believe you need to remove (disable the port or disconnect the device) the violating device, create the entry in the AuthConfig table and then you can re-connect the new device. You may need to wait 60 seconds for the entry to age out (that's the default aging timer I believe).

Good Luck!
If you've found this site useful and helpful, please help me spread the word. Link to us in your blog or homepage or Tweet about us! - Thanks!

Offline nnukdead

  • Rookie
  • **
  • Posts: 12
Re: Mac security on baystack
« Reply #6 on: September 02, 2010, 03:44:18 AM »
Thanks Mike and Nightawatch, I have got this working now....