Port Security - Cisco


Membatasi  akses user yg terkoneksi melalui interface / port


switch#conf t
switch(config)#interface fa0/1
switch(config)#switchport mode access
switch(config)#switchport port-security
switch(config)#switchport port-security mac-address sticky
switch(config)#switchport port-security maximum 1
switch(config)#switchport port-security violation shutdown
switch(config)#no shutdown
switch(config)#exit

Penjelasan :# interface number
# mengatur mode interface
# enable PORT SECURITY
# interface akan Membaca MAC-ADDRESS DI RUNN CONFIG 
# MAXIMUM HANYA 1 MAC-ADDRESS YG diset / diizinkan di interface ini
# MEMBUAT DAMPAK SHUTDOWN, kepada PC NOT REGISTERED 
# MENGAKTIKAN interface ini
# exit / back


 
# melihat running config
switch#sh run
interface FastEthernet0/1
switchport mode access
switchport port-security
switchport port-security mac-address sticky
switchport port-security mac-address 0090.0C84.7862
!
interface FastEthernet0/2
switchport mode access
switchport port-security
switchport port-security mac-address sticky
switchport port-security mac-address 00D0.FFC2.DEA5
!
interface FastEthernet0/3
switchport mode access

terlihat diatas mac-address pc yg telah terdeteksi oleh port switch
int0/1 dan int0/2
# save running config
Maka lakukanah save running config
switch#wr




----------------------------------------------------------------------------------------------


SETTING MANUAL 
Meregistrasi MAC-ADDRESS PC ON PORT-SECURITY

switch#conf t
switch(config)#interface fa0/1
switch(config)#switchport mode access
switch(config)#switchport port-security
switch(config)#switchport port-security mac-address 00D0.FFC2.DEA5
switch(config)#switchport port-security maximum 1
switch(config)#switchport port-security violation shutdown
switch(config)#no shutdown

switch(config)#exit






------------------------------------------------------------------------------------------------------------------