HPE GreenLake Administration
- Community Home
- >
- Networking
- >
- Switching and Routing
- >
- HPE Aruba Networking & ProVision-based
- >
- Aruba 2530, 802.1x, mab and address-limit
HPE Aruba Networking & ProVision-based
1834646
Members
2282
Online
110069
Solutions
Forums
Categories
Company
Local Language
back
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Discussions
Forums
Discussions
back
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Blogs
Information
Community
Resources
Community Language
Language
Forums
Blogs
Topic Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-20-2020 06:31 AM
01-20-2020 06:31 AM
Aruba 2530, 802.1x, mab and address-limit
Hello!
I need to configure port-security for 1 mac-address per port on Aruba 2530 switch with 802.1x or mab (mac-access-bypass) enabled.
1.. The main command port-security %port-number% address-limit %mac-count% is not compatible with 802.1x
2. Command aaa port-access authenticator %port-number% client-limit %mac-count% is not working for mab clients and aaa port-access mac-based %port-number% addr-limit %mac-count% i is not working for 802.1x, so there 2 devices working together.
So is it possible to create a limitation with 1 mac per port with 802.1x and mab?
My config:
untagged vlan 826
port-security action send-alarm
aaa port-access authenticator
aaa port-access authenticator reauth-period 900
aaa port-access authenticator auth-vid 1
aaa port-access authenticator unauth-period 10
aaa port-access authenticator client-limit 1
aaa port-access mac-based
aaa port-access mac-based quiet-period 30
aaa port-access mac-based reauth-period 900
aaa port-access mac-based unauth-period 10
aaa port-access mac-based unauth-vid 828
aaa port-access auth-order authenticator mac-based
aaa port-access auth-priority authenticator mac-based
spanning-tree admin-edge-port
spanning-tree root-guard bpdu-protection pvst-protection
The opinions expressed above are the personal opinions of the authors, not of Hewlett Packard Enterprise. By using this site, you accept the Terms of Use and Rules of Participation.
Company
Events and news
Customer resources
© Copyright 2025 Hewlett Packard Enterprise Development LP