cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
928
Views
0
Helpful
1
Replies

NAC and switchport port-security

Wemerson Luiz
Level 1
Level 1

Dear,Friends

I have NAC working on Out-Of-Band Vitual Gateway.

When I Enable Port Security on the CAM, this don't work very well.

I need allow two mac-address for interface, one workstation and one phone.

The first User is authenticated and placed in the correct VLAN according to the group. Total MAC Addresses increases the workstation and the phone correctly.

Switch#sh port-security interface gigabitEthernet 1/24
Port Security                          : Enabled
Port Status                            : Secure-up
Violation Mode                       : Shutdown
Aging Time                            : 0 mins
Aging Type                            : Absolute
SecureStatic Address Aging   : Disabled
Maximum MAC Addresses     : 2
Total MAC Addresses            : 2
Configured MAC Addresses    : 0
Sticky MAC Addresses          : 0
Last Source Address:Vlan      : fcfb.fbca.2c65:89
Security Violation Count         : 0

After if I:

- change of user
- bounce the interface
- plug another workstation on interface

Anything happens, and port remains on Access VLAN.


Somebody Know How Can I fix this problem?

Regards

1 Reply 1

Eduardo Aliaga
Level 4
Level 4

Could you please elaborate on your question? I don't understand what's exactly the problem.