I have a 3560 with version 12.2.25SEE3 and I would like to setup switchport security on all the ports. I noticed if I connect a IP phone to the switch it detects the phone but not the computer connected to it. Is there a work around? I would like to see all mac addresses and setup a rule to block additional macs.
For port-security with IP phones enable, please set the MAX vlaue to 3 atleast. I have observed it during my labs that you need atleast Max mac count to be 3. When your IP phone is first detected on the port its mac-address is registered both in the voice vlan and data vlan.You r PC's MAC will be registered always in data vlan. For AP's you have set the MAX Mac-count value to the number of clients you want to allow on the AP.
I dont fully agree with you on this point. In older Layer2 switches like 2900XL and 3500XL, you had to configure the ports as TRUNK PORTS to connect the IP phones on the switchport. The IP phones used to work only with this configuration. But if you have newer switches like 3560's,3750's you dont have to configure the ports as trunk ports and have to configure the IP phone or PC to be a past of their access vlans.
HTH,Please rate if it does.