Auto-Learning
Authorization Scenario
Assume that the port security feature is activated and the following conditions are specified in the active
database:
• A pWWN (P1) is allowed access through interface vfc21 (F1).
• A pWWN (P2) is allowed access through interface vfc22 (F1).
• A nWWN (N1) is allowed access through interface vfc22 (F2).
• Any WWN is allowed access through interface vfc31 (F3).
• A nWWN (N3) is allowed access through any interface.
• A pWWN (P3) is allowed access through interface vfc24 (F4).
• A sWWN (S1) is allowed access through interface vfc31-33 (F10 to F13).
• A pWWN (P10) is allowed access through interface vfc41 (F11).
The following table summarizes the port security authorization results for this active database.
Table 21: Authorization Results for Scenario
Device Connection
Request
P1, N2, F1
P2, N2, F1
P3, N2, F1
P1, N3, F1
P1, N1, F3
P1, N4, F5
P5, N1, F5
P3, N3, F4
S1, F10
S2, F11
P4, N4, F5 (auto-learning
on)
P4, N4, F5 (auto-learning
off)
Cisco Nexus 6000 Series NX-OS SAN Switching Configuration Guide, Release 6.x
158
Authorization
Condition
Permitted
1
Permitted
1
Denied
2
Permitted
6
Permitted
5
Denied
2
Denied
2
Permitted
1
Permitted
1
Denied
7
Permitted
3
Denied
4
Configuring Port Security
Reason
No conflict.
No conflict.
F1 is bound to P1/P2.
Wildcard match for N3.
Wildcard match for F3.
P1 is bound to F1.
N1 is only allowed on F2.
No conflict.
No conflict.
P10 is bound to F11.
No conflict.
No match.
OL-27932-01