<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Allowing a desktop just to specific switch port in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109551#M165728</link>
    <description>&lt;P&gt;Hello, I was wondring if there is a way to allow a specific desktop (mac) just in a specific port. Port Security did not work, if you change the desktop and not connect anything in the port with port security. Static Mac address neither worked.&lt;/P&gt;&lt;P&gt;Suggestions?&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 02:50:16 GMT</pubDate>
    <dc:creator>gnazer</dc:creator>
    <dc:date>2019-03-11T02:50:16Z</dc:date>
    <item>
      <title>Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109551#M165728</link>
      <description>&lt;P&gt;Hello, I was wondring if there is a way to allow a specific desktop (mac) just in a specific port. Port Security did not work, if you change the desktop and not connect anything in the port with port security. Static Mac address neither worked.&lt;/P&gt;&lt;P&gt;Suggestions?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:50:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109551#M165728</guid>
      <dc:creator>gnazer</dc:creator>
      <dc:date>2019-03-11T02:50:16Z</dc:date>
    </item>
    <item>
      <title>Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109552#M165772</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Good morning &lt;/P&gt;&lt;P&gt; Thanks for using our forum&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Hi gnazer&amp;nbsp; my name is Johnnatan and I am part of the Small business Support community, It´s going to be very useful if you told us your switch model, on that way we could give you a better help, for now, what I can say is that you probably misconfigured port-security, let me share some information about it&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&lt;A href="http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&amp;amp;pid=4&amp;amp;app=search&amp;amp;vw=1&amp;amp;articleid=85"&gt;http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&amp;amp;pid=4&amp;amp;app=search&amp;amp;vw=1&amp;amp;articleid=85&lt;/A&gt; &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;And yes,&amp;nbsp; there's another way to aunthenticate&amp;nbsp; users, using a Radius server and&amp;nbsp; the 802.1X Port Authentication protocol. &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&lt;A href="http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&amp;amp;pid=4&amp;amp;app=search&amp;amp;vw=1&amp;amp;articleid=988"&gt;http://www6.nohold.net/CiscoSB/Loginr.aspx?login=1&amp;amp;pid=4&amp;amp;app=search&amp;amp;vw=1&amp;amp;articleid=988&lt;/A&gt;&amp;nbsp; &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;I hope you find this answer useful, if it was satisfactory&amp;nbsp; for you, please mark the question as Answered. &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Please rate post you consider useful. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Greetings,&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Johnnatan Rodriguez Miranda.&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Cisco network support engineer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in; border: none; padding: 0in;"&gt;&lt;SPAN&gt;Cisco has a very useful tool called GuideMe, is made for small business products, and your device is in this category, you can use this address for accessing the tool: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://sbkb.cisco.com/CiscoSB/Loginr.aspx?alt1"&gt;http://sbkb.cisco.com/CiscoSB/Loginr.aspx?alt1&lt;/A&gt;&lt;SPAN&gt; = &amp;amp; pid = 4 &amp;amp; eroute = Super, is very easy to use, just complete the 3&amp;nbsp; spaces on this way: &lt;/SPAN&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in; border: none; padding: 0in;"&gt;Select a category: (Select the device type on request), e.g. Routers &lt;/P&gt;&lt;P style="margin-bottom: 0in; border: none; padding: 0in;"&gt;Enter model: (Type the model on request), e.g. RV042 &lt;/P&gt;&lt;P style="margin-bottom: 0in; border: none; padding: 0in;"&gt;Question: (Type what&amp;nbsp; you want to know&amp;nbsp; about the device), e.g. VPN &lt;/P&gt;&lt;P style="margin-bottom: 0in; border: none; padding: 0in;"&gt;And it'll be showing all the information you need about what you wrote.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Nov 2012 14:17:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109552#M165772</guid>
      <dc:creator>jonatrod</dc:creator>
      <dc:date>2012-11-29T14:17:07Z</dc:date>
    </item>
    <item>
      <title>Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109553#M165827</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thnaks &lt;A _jive_internal="true" href="https://community.cisco.com/people/jonatrod" id="jive-65107512839522578455594" style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; outline: none; color: #000000; font-weight: bold; font-family: Arial, verdana, sans-serif;"&gt;Jonathan&lt;/A&gt;, Sorry I forgot to mention the switche model, they are Catalyst 3750&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Nov 2012 14:48:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109553#M165827</guid>
      <dc:creator>gnazer</dc:creator>
      <dc:date>2012-11-29T14:48:32Z</dc:date>
    </item>
    <item>
      <title>Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109554#M165898</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="margin-bottom: 0in;"&gt;Hi gnazer&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Did you enable the port security features, with “switchport port-security”?, by the way, your interface configuration has to look moreless like this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Int GIx/x&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; --&amp;gt;&amp;nbsp; enable port security&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport mode access&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; --&amp;gt;&amp;nbsp; Configures the port as&amp;nbsp; access switchport &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport access vlan (#)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; --&amp;gt; Number of the port vlan.&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security mac-address sticky&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; --&amp;gt; Maps dinamically tha Mac-address&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security maximum {# }&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; --&amp;gt;Limit the number of hosts per port&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security violation {protect | restrict | shutdown |shutdown vlan}&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; --&amp;gt;Action at the port in case of a attempted of violation&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;I hope you find this answer useful, if it was satisfactory&amp;nbsp; for you, please mark the question as Answered. &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Please rate post you consider useful.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Greetings,&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Johnnatan Rodriguez Miranda.&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Cisco network support engineer.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Nov 2012 15:21:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109554#M165898</guid>
      <dc:creator>jonatrod</dc:creator>
      <dc:date>2012-11-29T15:21:05Z</dc:date>
    </item>
    <item>
      <title>Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109555#M165920</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Gnazer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for posting, unfortunately the Cisco Support community is dedicate to Small business products&lt;/P&gt;&lt;P&gt;In order to get an accurate and quick answer egarding our Enterprice devices you can post under the Enterprise support forum or contact our support line at 1-800-553-6387.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Diego Rodriguez&lt;/P&gt;&lt;P&gt;Cisco network engineer&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Nov 2012 15:31:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109555#M165920</guid>
      <dc:creator>jurodri3</dc:creator>
      <dc:date>2012-11-29T15:31:31Z</dc:date>
    </item>
    <item>
      <title>Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109556#M165947</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Again Jonathan, I had consider the options that you have suggested, but I should configure all switch ports in this way right? With all implicantions ragarding the administrative work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I want that Workstation with Mac A just work isuccesfuly in port 1 (no other port)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I configure JUST port 1 in this way, just the Workstation with the mac A could be connected in port 1.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I connect Workstation Mac B in port 1 a violation will occur&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I connect Workstation A in port 2, connection will be successful (this is what I want to prevent)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Nov 2012 19:43:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109556#M165947</guid>
      <dc:creator>gnazer</dc:creator>
      <dc:date>2012-11-30T19:43:51Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109557#M165963</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi gnazer&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;What I recommend you is to statically assign each port with its respective MAC address&amp;nbsp; of each computer, and turn off all unused ports.Let´s say you have a switch with four ports and you have three computers, and you want to each&amp;nbsp; computer can&amp;nbsp; access to one specific port.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Port 1 →&amp;nbsp; Computer A &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Port 2 →&amp;nbsp; Computer B &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Port 3 →&amp;nbsp; Computer C &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;Port 4 →&amp;nbsp; Not in use&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;A example configuration could be this one.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;interface FastEthernet0/1&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport access vlan 10 &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport mode access &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security violation restrict &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security mac-address AAAA.AAAA.AAAA &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;interface FastEthernet0/2 &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport access vlan 10 &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport mode access &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security&lt;/P&gt;&lt;P&gt;&amp;nbsp; switchport port-security violation restrict&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security mac-address BBBB.BBBB.BBBB &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;interface FastEthernet0/3 &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport access vlan 10 &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport mode access&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security&lt;/P&gt;&lt;P&gt;&amp;nbsp; switchport port-security violation restrict&lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport port-security mac-address CCCC.CCCC.CCCC &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;interface FastEthernet0/4 &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport access vlan 10 &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; switchport mode access &lt;/P&gt;&lt;P style="margin-bottom: 0in;"&gt;&amp;nbsp; Shutdown &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; margin: 0px 0px 0in; font-family: Arial, verdana, sans-serif;"&gt;I hope you find this answer useful, if it was satisfactory&amp;nbsp; for you, please mark the question as Answered.&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; margin: 0px 0px 0in; font-family: Arial, verdana, sans-serif;"&gt;Please rate post you consider useful.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; margin: 0px 0px 0in; font-family: Arial, verdana, sans-serif;"&gt;Greetings,&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; margin: 0px 0px 0in; font-family: Arial, verdana, sans-serif;"&gt;Johnnatan Rodriguez Miranda.&lt;/P&gt;&lt;P style="background-color: #f7fafb; border-collapse: collapse; font-size: 12px; list-style: none; margin: 0px 0px 0in; font-family: Arial, verdana, sans-serif;"&gt;Cisco network support engineer.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Nov 2012 20:39:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109557#M165963</guid>
      <dc:creator>jonatrod</dc:creator>
      <dc:date>2012-11-30T20:39:51Z</dc:date>
    </item>
    <item>
      <title>Allowing a desktop just to specific switch port</title>
      <link>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109558#M165975</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Cisco ACS&amp;nbsp; or preferably Cisco ISE would be a better way to centrally manage this and also generate reporting in compliance and non-compliance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV id="nuan_ria_plugin"&gt;&lt;OBJECT height="0" id="plugin0" style="position: absolute; z-index: 1000;" type="application/x-dgnria" width="0"&gt;&lt;PARAM name="tabId" value="" /&gt;&lt;PARAM name="counter" value="" /&gt;&lt;/OBJECT&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Dec 2012 23:40:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/allowing-a-desktop-just-to-specific-switch-port/m-p/2109558#M165975</guid>
      <dc:creator>jw.sl9</dc:creator>
      <dc:date>2012-12-04T23:40:02Z</dc:date>
    </item>
  </channel>
</rss>

