Layer 3 Interface Security
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-31-2020 01:18 AM
Hi
I have a IR809 Router.
I have it deplyed so that on interface Gi1 there is a host connected.
How do i prevent somebody to unjack the Host, and plugging in another device.
On a switch i would use "switchport port-security mac-address" and lock down the MAC.
Is there away to do this on a Layer 3 Interface?
Thank you
Niklas
- Labels:
-
ISR 1000 Series
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-31-2020 02:39 AM
On Router L3 interface you have different options available like ACL to control the traffic based on the IP or subnet. Further, if you are running L3 Routing protocols then you can setup authentication feature of it so it.
So depending on your objectives, you can put some control on Router L3 interface.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-31-2020 12:10 PM
You may want to check out the "mac-address-table secure" command if you want to ensure that only a certain MAC address can communicate from a certain interface.
