cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
298
Views
5
Helpful
2
Replies

4510 Port Security Issue

Njordic1429
Level 1
Level 1

Any thoughts on the following topic??  

In our organization we've started to migrate from stacked switches to a Catalyst 4510R+E with 2 SUP 8E's for our LAN.  When we started migrating our old lines to the new switch's ports, our IP phones / printers were not receiving their IP addresses via DHCP.  We've set up a stand alone troubleshooting station with just one port and one IP phone.  We found out that when we have port-security enabled (which is what we want), the IP phones and Printers will not receive an IP address.  We've even set the max number of MAC addresses to 100 to see if that could be our issue; it didn't solve the issue.  The only way to make it work was to disable port-security, then everything connects and works fine.  Current general config on all ports without port-security:

 switchport access vlan 2
 switchport mode access
 switchport port-security maximum 3
 switchport port-security aging time 2
 switchport port-security violation restrict
 switchport port-security aging type inactivity
 ip arp inspection limit rate 100
 no logging event link-status
 load-interval 30
 spanning-tree portfast
 spanning-tree bpduguard enable
 spanning-tree guard root
 ip dhcp snooping limit rate 100

 

Here is a similar problem that others have been experiencing as well:  https://supportforums.cisco.com/discussion/12111896/4510-port-security-dhcp

Any suggestions would be wonderful thanks!

2 Replies 2

mlinval
Level 1
Level 1

We are experiencing the exact same type of issues with the same hardware.  Not all devices are being affected by port-security but those that are get resolved by turning it off.

I will let you know if we solve the issue.

Great to hear we're not the only ones.  Only certain phones / printers are affected as well for us (most are though).  

I will post a reply back on this topic as well if we're able to come up with a fix.  It's not a priority at this moment for us, but we will be migrating in the near future to the 4510.  

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card