Wednesday, August 8, 2018

Junos port security

I have qfx and ex switches. I have port security configured for my access ports.

I configured it in switch-port stanza. Basically just a sticky Mac and the action is shutdown.

The problem now is on xe-0/0/0, I'm not seeing any Mac entries. I have a server plugged into xe-0/0/0 and the interface terse shows up/down, but the show interface xe-0/0/0 shows it is up. Even the show ethernet-switching interface xe-0/0/0 states is forwarding. I ran the monitor traffic on xe-0/0/0 and I see an arp from my server requesting for a Mac for another device. But somehow, the switch is not reporting anything on the port and the interface terse shows it is up/down.

Any idea? Is this a bug in the switch firmware?



No comments:

Post a Comment