cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
402
Views
0
Helpful
3
Replies

Port Security on 3550 catalyst switch

fini
Level 1
Level 1

As it stands at the moment, a user could come in after working hours, plug in a laptop, gets an IP address from the DHCP server and copy over sensitive data.

We plan to implement some security on our network such that no one will be able to access data on any of the LAN computers except when enabled by administrator.

WILL PORT SECURITY DO THE TRICK or are there any other alternatives?

3 Replies 3

tcross3
Level 1
Level 1

I have the same problem on my college campus. We are planning to go to 802.1x which is supported on the 3550. Port security will also work, but you have to keep the violation timeouts very very secret. If that gets out then they will wait for the time out to clear the mac address and then plug in their computer and work. Now when you put it back together your computer will violate the port. If you want to deter the port security, If you want to protect then 802.1x.

Hope this helps.

mdoldan
Level 1
Level 1

The problem with doing port level security is the administrative overhead. Have you considered server security? What resources are you trying to protect?

Trying to protect data on the group share. The group share is on the file server. Any ideas?

Review Cisco Networking for a $25 gift card