cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
921
Views
0
Helpful
1
Replies

switchport port-security w/ hsrp (shared mac addresses)

srue
Level 7
Level 7

I have a 3750 switch and then i have two 3825 routers configured for HSRP that are plugged into this switch. i want to configure port-security and i'm trying to figure out the best way since the hsrp routers share (or can potentially) share the hsrp mac address. Is the CAM table built from dynamically learned MAC addresses, or in the case of configurting mac addresses per port, is it built from those commands? Basically i want to statically bind the physical mac address with each switchport, but also bind the virtual/hsrp mac address to each switchport even though its the same one on each port? (i hope this is all making sense)...will this configuration cause problems?

TIA

1 Reply 1

amit-singh
Level 8
Level 8

Hi Friend,

This thing will not work with port-security. You can have only one mac-address bind to port. If you have the same mac-address on 2 ports, port-security will detect as a voilation and will shutdown the port.

http://www.cisco.com/univercd/cc/td/doc/product/lan/cat3750/12225see/scg/swtrafc.htm#wp1038501

HTH,

-amit singh