[tech] Port security for clubroom wall ports
Matt Didcoe
mattman at ucc.gu.uwa.edu.au
Mon Sep 10 18:33:01 WST 2012
Hi,
I got a bit fed up with going into the clubroom and attempting to use
a desktop machine, only to discover some inconsiderate person/persons
had removed the network cable to use with their laptop and failed to
return it.
As a complete over-reaction and rather than fixing the social problem
at hand, much is the way we handle things at UCC, I've implemented a
broad technical solution that may or may not work!
MAC based port security is configured on bitumen for Gi7/1-48 which is
all the clubroom ports. Gi7/19 is slightly different as that's got the
little hub over on the shelves attached, which has `switchport
port-security maximum 10` set, which means that 10 MAC addresses can
be associated with that port.
I'll monitor the situation for a few days and see if we get any
complaints. If we do its easy enough to revert. Anyone interested in
the rest of the config (there's only a couple of other lines) at
rancid.
Cheers,
[MRD]
More information about the tech
mailing list