Switch Port Control Settings
Switch port blocking and VLAN settings for control policies or manual shutdown begin with SNMP configuration, which provides the necessary information and access for port blocking and VLAN settings. For basic switch settings, refer to: Browsing Switches
Switch Port Control via Enforcement Policy
Switch Port Blocking Settings in Enforcement Policy
The target for switch port blocking is determined by the enforcement policy. To block a specific node's switch port, you must create an enforcement policy targeting that node and then configure the switch port blocking option.
- Go to Policy in the top menu.
- Go to Policy > Enforcement Policy in the left menu.
- Click the desired ID of the enforcement policy to apply switch port blocking.
Configure as follows under Control Options > Switch Port Control:
- Select the Port Blocking option for Switch Port Control.
- For SNMP Community, enter the default Community string or SNMPv3 user and password. If this setting is left blank, the switch's own settings will be used.
- For Port Description, enter text to be appended to the switch port's existing description.
- For Blocked Port MAC Count, if the number of MACs on the switch port exceeds this count, it will not be blocked.
- Click the Modify button.
Switch VLAN Settings in Enforcement Policy
The target for switch port VLAN settings is determined by the enforcement policy. To set a VLAN for a specific node's switch port, you must create an enforcement policy targeting that node and then configure the switch VLAN setting option.
To configure VLAN settings based on node movement for switch ports, you need to set up Configuration > Preferences > Audit Log > SNMP Trap Reception, and MAC-Notification Trap settings are required on the switch.
- Go to Policy in the top menu.
- Go to Policy > Enforcement Policy in the left menu.
- Click the desired ID of the enforcement policy to apply switch port blocking.
Configure as follows under Control Options > Switch Port Control:
- Select the VLAN Setting option for Switch Port Control.
- For SNMP Community, enter the default Community string or SNMPv3 user and password. If this setting is left blank, the switch's own settings will be used.
- Click the Modify button.
Manual Control via Switch Registration
Manual Switch Port Shutdown
You can manually shut down Switch Ports in the web UI.
- Go to Management > Switch in the top menu.
- In the All Switch Ports management view, click Name.
- Click the checkbox next to Admin Down.
- Click the Modify button.
Switch Port Manual Control
You can manually control Switch Ports in the web UI under Management > Switch.
- Go to Management > Switch in the top panel.
- Click on Port in the main Switch Ports window.
- Configure one or more of the following: - Admin Down: Check or uncheck the box to change the port link status. - VLAN ID: Enter a VLAN ID for the port.
- If a node's policy changes to an enforcement policy without a specified VLAN setting, the default VLAN will change the VLAN number of that port to the switch's default VLAN.
- Click Send SNMP Command.