User Manual

Table Of Contents
NETGEAR M4500 Series Switches CLI Command Reference Manual 432
5.14. Security Commands
This section describes the commands you use to configure Port Security, which is also known as port MAC
locking, allows you to secure the network by locking allowable MAC addresses on a given port. Packets with a
matching source MAC address are forwarded normally, and all other packets are discards.
Note: To enable the SNMP trap specific to port security, see “snmp-server enable traps violation”.
5.14.1. show port-security
This command displays the port-security settings for the port(s). If you do not use a parameter, the command
displays the Port Security Administrative mode. Use the optional parameters to display the settings on a specific
interface, port-channel, or on all interfaces.
Format show port-security [{<slot/port> | all | port-channel <portchannel-id>}]
Mode Privileged EXEC
User EXEC
Display Message
If you do not use the optional parameters slot/port, all, or port-channel <id>, then the command displays
following information.
For each interface, or for the interface you specify, the following information appears:
Parameter
Definition
Administrative Mode
Port Locking mode for the entire system. The field displays if you do not support
any parameters.
Parameter
Definition
Admin Mode
Port Locking mode for the interface.
Dynamic Limit
Maximum dynamically allocated MAC addresses.
Static Limit
Maximum statically allocated MAC addresses.
Violation Trap Mode
Whether violation traps are enabled.
Violation Shutdown
Whether violation shutdown mode are enabled.
Sticky Mode
Whether sticky mode are enabled.