Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell SmartFabric OS10 User Guide Release 10.5.3

PDF

Port-security on VLT

This feature provides port-security support on VLT topologies.

The port-security feature is enhanced to support VLT port channels. New mismatch configurations are added to show configuration and sticky MAC mismatch across VLT peers.

MACs learned on an orphan port with mac move deny configurations on one VLT peer is not allowed to move to port-security enabled orphan ports on the other VLT peer. Violation is triggered for such movements.

Sticky MACs are not allowed to move across VLT peers.

NOTE:
  1. MAC movement is allowed between port-security enabled and disabled ports.
  2. As part of VLT topology formation, while MACs are syncing up with each other, if there are any conflicts for MAC received in the sync message (MAC is present locally but with different egress port), the MAC is deleted and the delete is synced back to the peer node.
  3. If there are mismatching sticky or mac move allow or mac move deny configurations on a VLT port across nodes, MACs can move from the VLT port to the other ports even though sticky or mac move deny is configured on one of the nodes.
  4. It is not recommended to enable port-security on PVLAN ISL port.

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\