02-24-2022 06:16 AM
Hello,
I have a problem which the violation count of one of my interfaces.
The port-security of the interface is disabled, but i have a violation count of 54.
I thought, that it isnt possible for the violation count to rise, if the port-security is disabled.
Does anyone know, how this is possible?
Here is Screenshot of the return of a "show port-security interface xx" on the named interface
02-24-2022 06:17 AM
02-24-2022 06:18 AM
no attachment
02-24-2022 06:18 AM
seems that something went wrong there. I put the attachement in my own reply
02-24-2022 06:28 AM
what is this device? can you post show run interface x/x
02-24-2022 06:47 AM
02-24-2022 06:58 AM
we do not see any security config on the port, suggest to post show run (full config removing confidential information)
suggest to clear :
#clear port-security ?
all All secure MAC addresses
configured Configured secure MAC address
dynamic Secure MAC address auto-learned by hardware
sticky Secure MAC address either auto-learned or configured
02-24-2022 07:05 AM
- Does the port get disabled (or not) , check logs ,or use syslog-server (preferred) for monitor of switch logs.
M.
02-24-2022 07:32 AM
Hi Friend the info. you share is enough for me,
the Port go to Secure-down then you disable port-security.
to return the port to normal secure-up you need to shut/no shut the port then check
port-security check secure-up then after that even if the mac address change or anything elsa happen don't not effect the port any more.
also check the violation count it must be reset when shut/no shut.
02-24-2022 10:11 AM
Hello
Ty clearing or defaulting the interface and test again:
clear port-security xxxx
conf t
default interface x/x
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide