cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
622
Views
0
Helpful
2
Replies

Solution Needed for Port Blocking

HI Experts,

Is there any solution or device are there to do  port blocking????

i.e I will configure one policy, if anyone violate that policy, that port automatically needs to block. Then administrator only needs to enable that port.

For example i will configure MAC filtering. So i will maintain MAC address database if anyone connects then first the device need to check against to this database. If others connected, then the ports need to block.

Regards,

Janardhan

2 Replies 2

Nicolas Darchis
Cisco Employee
Cisco Employee

If the policy is about having the right mac address or right credentials, you are looking for 802.1x.

I suggest reading the switch config guide talking about flexible authentication : 802.1x and mac-address bypass.

By configuring MAB (mac address bypass) you will authenticate the devices mac addresses against a radius server. If not in the database, they are blocked all access to the network

Chris Illsley
Level 3
Level 3

I think you are talking about port-security with sticky mac-addresses:

http://www.cisco.com/en/US/docs/switches/lan/catalyst3560/software/release/12.2_37_se/command/reference/cli3.html#wp1948361

Cheers

Chris