1. SAP ERP 6.0 SR3 (51033500) - Installation Export - disc-1
2. SAP ERP 6.0 SR3 (51033500) - Installation Export - disc-2
3. SAP Netweaver 7.0 SR3 (51033508)
- Kernel 7.0
- Linux on x86_64 64bit
- Windows Server on IA32 - 32bit
- Windows Server on IA64 - 64bit
- Windows Server on x64 - 64bit
4. SAP License Keys & License Audit (Information & Documentation) - (50081125) x 2
5. SAP EHP1 for SAP Netweaver 7.0 SR1 - (51036769)
- Kernel 7.0
- Linux on (IA32 - 32bit / IA 64 - 64bit)
- Linux on (x86_64 64bit, Power 64bit)
- Linux on zSeries 64bit
- OS/400
6. SAP ERP (Enterprise Resource Planning) - Documentation - (50085424)
7. SAP Solution Manager 7.0 EHP1 (installation & Upgrade) - (51037376)
- Kernel NW 7.01 SR1
- RDBMS MaxDB 7.7.04 Build 28
- SAP NW 7.10 Presentation C4
- Documentation, SPS19/20
8. Oracle 10.2 - 32bit / 64bit Client - (51033272)
9. SAP ERP 6.0 SR3 - ERP Components - (51033525)
10. SAP Netweaver 7.0 SR3 - (51033505)
- Kernel 7.00
- HP-UX on IA64 - 64bit
- HP-UX on PA-RISC - 64bit
- Solaris on SPARC - 64bit
11. SAP Netweaver 7.0 SR3 - (51033506)
- Kernel 7.00
- AIX - 64bit
- OS/400
12. SAP Netweaver 7.0 SR3 - (51033507)
- Kernel 7.00
- Linux on IA32 - 32bit
- Linux on IA64 - 64bit
- Linux on Power - 64bit
- Linux on zSeries - 64bit
13. SAP Netweaver 7.0 SR3 - (51033509)
- Kernel 7.00
- Solaris on x64 - 64bit
14. SAP Netweaver 7.0 SR3 - (51033510)
- Kernel 7.00
- z/OS - 64bit
15. SAP AP 7.00 - (51031096)
- Add-On Installation based on SAP Basis Release 700
16. SAP ERP 6.0 SR3 - (51033520)
- Upgrade Master
17. SAP ERP 6.0 SR3 Language - (51033496) - disc1
18. SAP ERP 6.0 SR3 Language - (51033496) - disc2
19. SAP ERP 6.0 SR3 - Upgrade Export - (51033501) - disc1
20. SAP ERP 6.0 SR3 - Upgrade Export - (51033501) - disc2
21. SAP ERP 6.0 SR3 - Upgrade Export - (51033501) - disc3
22. Oracle 10.2 - (51031678) x2
- RDBMS
- Windows Server on IA32 - 32bit
- Windows Server on IA64 - 64bit
- Windows Server on x64 - 64bit
23. Oracle 10.2 - 10g Release 2 Documentation Library - 64bit - (51031687)
- Oracle 10.2 - 32bit
24. Oracle 10.2 - (51036971) x2
- RDBMS Patch 10.2.0.4
- Windows Server on IA32 - 32bit
- Windows Server on IA64 - 64bit
- Windows Server on x64 - 64bit
- True64 - 64bit
25. Oracle 10.2 - Client - 64bit - (51033272)
- Oracle 10.2 - 32bit
26. SAP ERP 6.0 - Support Package Stack 16, Supplement to SAP Netweaver 7.0 (2004s) Stack 18 - (51037818) - disc1 / disc2
- Java Components
27. SAP Netweaver 7.0 (2004S) - Support Package Collection - Stack 18 - (51037046) - disc1 / disc2
- Java Stack 18
28. Oracle 10.2.0.4 - Oracle Failsafe Server 3.4.1.5 for Windows Server 2008 on x64 - 64bit - (51036975) x 2
29. SAP EHP1 for SAP Netweaver 7.0 SR1
- Kernel 7.01
- Windows (IA32 - 32bit, IA64 - 64bit, x64 - 64bit)
- AIX 64bit, z/OS - 64bit)
- HP-UX (IA64 - 64bit, PA_RISC - 64bit)
- Solaris (SPARC - 64bit, x64 - 64bit)
30. SAP Netweaver 7.0 - Presentation - (50095979) x2
- (SAP GUI for windows - 7.10 Comp.4)
- SAP GUI for JAVA 7.10
- Server Components, Content Server
- Adobe LiveCycle Designer
31. SAP Business Suite 2005 - (51033526)
- Java Components for
SAP ERP 6.0 SR3
SAP CRM 5.0 SR3
SAP SCM 5.0 SR3
SAP SRM 5.0 SR3
32. SAP (Supplier Relationship Management) - SRM_MDM Catalog 2.0 - SP01 - Installation & Upgrade - (51032915)
33. SAP Business Suite Solutions from SAP (SAP XRPM 4.0 SAP PPM 4.0 - (50082706)
34. SAP Catalog Content Management 2.0_640 / 2.0_700 - Add-On Installation / Upgrade - (51031320)
35. SAP SRM 5.0 - HTML help for Windows - (50077158)
36. SAP SRM 5.0 SR3 Server 5.5 - Upgrade Export - (51033480)
37. SAP SRM 5.0 SR3 Server 5.5 - Upgrade Master - (51033479)
38. SAP SRM 5.0 SR3 - SRM Components - (51033478)
39. SAP SRM 5.0 SR3 - Language - (51033477)
40. SAP SRM 5.0 SR3 Server 5.5 - Installation Export - (51033476)
41. SAP Solution Manager 7.0 EHP1 - Support Package Stack 19 and Stack 20 - (51037400)
42. SAP Solution Manager 7.0 EHP1 - (50095760)
43. SAP Solution Manager 7.0 EHP1 - Installation Master - (51036441)
44. SAP Solution Manager 7.0 EHP1 - Upgrade Master - (51036444)
45. SAP Solution Manager 7.0 EHP1 - Upgrade Export - (51036445)
46. SAP Solution Manager 7.0 EHP1 - Java based Software Components - (51036446)
47. SAP Solution Manager 7.0 EHP1 - Language - (51036447)
48. SAP Solution Manager 7.0 EHP1 - Installation Export - (51036442) - disc1
49. SAP Solution Manager 7.0 EHP1 - Installation Export - (51036442) - disc2
50. Oracle 10.2 - 32bit / 64bit - (51031687) - 10g Release 2 Documentation Library
51. SAP Netweaver 7.0 - Support Package Stack 17 - Including BI Content Add-on 3 SP 09 - (50091399)
52. SAP Netweaver 7.0 SR3 - Java Based Software Components - (51033513)
53. SAP Netweaver 7.0 SR3 - Development Workplace - (51033522)
54. SAP Netweaver 7.0 SR3 - Search and Classification (TREX 7.00) - (51033523)
55. SAP Netweaver 7.0 SR3 - LiveCache 7.6.03 Build 08 - (51033491)
56. BI Content 7.04 - Business Intelligence Content - Add-On Vers. 4 - (51033499)
57. Job Scheduler (OEM) - 6.0.2 SP5 - (51032411)
58. SAP Netweaver 7.0 SR3 - Language - (51033495)
59. SAP Business Suite 2005 - (51033511)
60. SAP Netweaver 7.0 SR3 - Upgrade Master - (51033512)
61. SAP Netweaver 7.0 SR3 - Installation Export - (51033493)
62. SAP Netweaver 7.0 SR3 - Upgrade Export - (51033494)
Tuesday, August 2, 2011
SAP ERP 6.0 on Linux (Oracle)
To download SAP for Linux.
http://www.service.sap.com/swdc
-->Downloads
-->Installations and Upgrades
-->My Companys Application Components
-->SAP ERP
-->SAP ERP 6.0
-->IDES-Version
-->LINUX-->oracle
- 51031676_1 DVD ORACLE RDBMS 10.2 LINUX_X86_64 (1 of 4)
- 51033508_9 NW 7.0 SR3 UC-Kernel 7.00 Linux on x86_64 64bit
- 51034992_8 ERP 6.0 SR3 IDES Installation Master Linux on x86_64 64bit
- 51034985_1 IDES SAP ERP 6.0 SR3 Inst. Export (1 to 23)
- 51036968_3 ORACLE RDBMS Patch 10.2.0.4 Linux on x86_64 64bit
--------------------------------------------------------------------
- 50081125 CD SAP License Keys & License Audit
- 50085424_1 ODoc. SAP ERP 2005 SPS08 (ECC 6.0) (1 of 5)
- 51031687 DVD Oracle 10.2 Rel. 2 Document. Library
- 51033272 ORACLE 10.2 Client
- 51033505_1 NW 7.0 SR3 Kernel 7.00 HP-UX on IA64 64bit
- 51033506_1 NW 7.0 SR3 Kernel 7.00 AIX 64bit
- 51033507_1 NW 7.0 SR3 Kernel 7.00 Linux on IA32 32bit
- 51033508_2 NW 7.0 SR3 Kernel 7.00 Linux on x86_64 64bit Upgrade ABAP
- 51033509_1 NW 7.0 SR3 Kernel 7.00 SOLARIS on x64 64bit (1 of 3)
- 51033510_1 NW 7.0 SR3 Kernel 7.00 z/OS 64bit (1 of 4)
- 51033513_1 NW 7.0 SR3 SP14 Java based SW Comp. (1 of 4)
- 51033523 NW 7.0 SR3 Search/Class. (TREX 7.00)
- 51033526 BS 2005 SR3 Java Components
- 51033525 SAP ERP 6.0 SR3 Components
----------------------------------------------------------------------------------
http://books4sap.blogspot.com/
http://sapbasisbooks.blogspot.com
http://sappress.blogspot.com/
http://sapebook.blogspot.com/
http://sapbimeterials.blogspot.com
http://www.saptechies.com/sap-press-boooks/
http://gadapasubhash.blogspot.com/
http://sapro.blogspot.com/
http://sapupdate.blogspot.com/
http://sap4learn.blogspot.com/
http://sap-on-linux.blogspot.com/
http://myadmin.wordpress.com/
http://www.sap-at-oracle.net/
https://dbamohsin.wordpress.com/category/oracle-10g/
http://www.sap-basis-abap.com/
http://www.sap-basis-abap.com/sapbs.htm
http://www.erpgenie.com/
http://searchsap.techtarget.com/tutorial/SAP-Basis-training-tutorial
http://www.sapcertified.info/
http://www.way2sap.com
http://www.sap4you.com
http://www.integraservices.co.uk
http://www.path2sap.com
http://www.emc.com/products/series/networker.htm#/2
https://community.emc.com/community/connect/networkeronline
http://www.freelancer.com/projects/arc-tag/sap-ecc-installation-linux-oracle.html?per=500
http://www.service.sap.com/swdc
-->Downloads
-->Installations and Upgrades
-->My Companys Application Components
-->SAP ERP
-->SAP ERP 6.0
-->IDES-Version
-->LINUX-->oracle
- 51031676_1 DVD ORACLE RDBMS 10.2 LINUX_X86_64 (1 of 4)
- 51033508_9 NW 7.0 SR3 UC-Kernel 7.00 Linux on x86_64 64bit
- 51034992_8 ERP 6.0 SR3 IDES Installation Master Linux on x86_64 64bit
- 51034985_1 IDES SAP ERP 6.0 SR3 Inst. Export (1 to 23)
- 51036968_3 ORACLE RDBMS Patch 10.2.0.4 Linux on x86_64 64bit
--------------------------------------------------------------------
- 50081125 CD SAP License Keys & License Audit
- 50085424_1 ODoc. SAP ERP 2005 SPS08 (ECC 6.0) (1 of 5)
- 51031687 DVD Oracle 10.2 Rel. 2 Document. Library
- 51033272 ORACLE 10.2 Client
- 51033505_1 NW 7.0 SR3 Kernel 7.00 HP-UX on IA64 64bit
- 51033506_1 NW 7.0 SR3 Kernel 7.00 AIX 64bit
- 51033507_1 NW 7.0 SR3 Kernel 7.00 Linux on IA32 32bit
- 51033508_2 NW 7.0 SR3 Kernel 7.00 Linux on x86_64 64bit Upgrade ABAP
- 51033509_1 NW 7.0 SR3 Kernel 7.00 SOLARIS on x64 64bit (1 of 3)
- 51033510_1 NW 7.0 SR3 Kernel 7.00 z/OS 64bit (1 of 4)
- 51033513_1 NW 7.0 SR3 SP14 Java based SW Comp. (1 of 4)
- 51033523 NW 7.0 SR3 Search/Class. (TREX 7.00)
- 51033526 BS 2005 SR3 Java Components
- 51033525 SAP ERP 6.0 SR3 Components
----------------------------------------------------------------------------------
http://books4sap.blogspot.com/
http://sapbasisbooks.blogspot.com
http://sappress.blogspot.com/
http://sapebook.blogspot.com/
http://sapbimeterials.blogspot.com
http://www.saptechies.com/sap-press-boooks/
http://gadapasubhash.blogspot.com/
http://sapro.blogspot.com/
http://sapupdate.blogspot.com/
http://sap4learn.blogspot.com/
http://sap-on-linux.blogspot.com/
http://myadmin.wordpress.com/
http://www.sap-at-oracle.net/
https://dbamohsin.wordpress.com/category/oracle-10g/
http://www.sap-basis-abap.com/
http://www.sap-basis-abap.com/sapbs.htm
http://www.erpgenie.com/
http://searchsap.techtarget.com/tutorial/SAP-Basis-training-tutorial
http://www.sapcertified.info/
http://www.way2sap.com
http://www.sap4you.com
http://www.integraservices.co.uk
http://www.path2sap.com
http://www.emc.com/products/series/networker.htm#/2
https://community.emc.com/community/connect/networkeronline
http://www.freelancer.com/projects/arc-tag/sap-ecc-installation-linux-oracle.html?per=500
Thursday, July 28, 2011
Basic OS and Hardware Knowledge for SAP Basis
Most Basis are from IT Administrator or DBA staff. They should have good knowledge on their field. Network Administrator has good knowledge on network stuff, router such as Cisco, 3COM, Nortell, etc, OS Administrator has specific knowledge about OS specific command, and DBA has well knowledge about database design, database query, database performance, database daily administration, etc.
If you have one of those knowledge, then that's good point and has great advantages for you. But if you don't have it, don't be shame. All you need is start to learn. Make it fast. That's all.
Depend on what kind of you SAP server and database your company will use, then you'll need to master them. Some operating system are very popular as SAP server such as IBM AIX, HP HPUX, Microsoft Windows, SUN Solaris, Redhat RHEL, and Novell SLES. You need to master specific configuration. Sometime you may tune some OS kernel.
IBM provide great books via redbooks website. You just need to download some of them. HP also provide some books although not as complete as IBM does. You need to buy some books if your company use SUN Solaris. If your company use Linux then you're lucky guy. Linux has numeruous books on internet which freely available to download. You also can start learning before SAP implementation because you can download Linux OS freely from internet.
Database software which are popular as SAP database software are Oracle, IBM DB2 and Microsoft SQL Server. You can start learning them by buying some books. Oracle is the most popular on the planet. There are many books about Oracle on bookstore. Many website and blogs explain Oracle tips and tricks. You can start learning IBM DB2 by downloading some ebooks from Redbooks website. Microsoft also provides some good books about SQL Server.
After you master some of basic configuration about operating system and database then you should be ready to start SAP implemenation. Let's SAP implementaion begin !!
Ref: http://sapbasisbooks.blogspot.com/2008/10/basic-os-and-hardware-knowledge-for-sap.html
If you have one of those knowledge, then that's good point and has great advantages for you. But if you don't have it, don't be shame. All you need is start to learn. Make it fast. That's all.
Depend on what kind of you SAP server and database your company will use, then you'll need to master them. Some operating system are very popular as SAP server such as IBM AIX, HP HPUX, Microsoft Windows, SUN Solaris, Redhat RHEL, and Novell SLES. You need to master specific configuration. Sometime you may tune some OS kernel.
IBM provide great books via redbooks website. You just need to download some of them. HP also provide some books although not as complete as IBM does. You need to buy some books if your company use SUN Solaris. If your company use Linux then you're lucky guy. Linux has numeruous books on internet which freely available to download. You also can start learning before SAP implementation because you can download Linux OS freely from internet.
Database software which are popular as SAP database software are Oracle, IBM DB2 and Microsoft SQL Server. You can start learning them by buying some books. Oracle is the most popular on the planet. There are many books about Oracle on bookstore. Many website and blogs explain Oracle tips and tricks. You can start learning IBM DB2 by downloading some ebooks from Redbooks website. Microsoft also provides some good books about SQL Server.
After you master some of basic configuration about operating system and database then you should be ready to start SAP implemenation. Let's SAP implementaion begin !!
Ref: http://sapbasisbooks.blogspot.com/2008/10/basic-os-and-hardware-knowledge-for-sap.html
Tuesday, July 26, 2011
WinXP RDesktop License Reset
Delete the mslicensing key from the registry in the path
HKLM/SOFTWARE/MICROSOFT/MSlicensing
delete the complete MSlicensing key from the client computer which tries to establish a remote session.
after u delete this key , the client machine would once again be issue a temp license and it would be valid for another 120 days in case of 2003 licensing server .
Solution: If the previous solution does not resolve this problem, create a backup of the MSLicensing registry key and its subkeys on the client, and then remove the original key and subkeys by doing the following:
1. On the client, navigate to the following registry subkey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSLicensing.
2. Click MSLicensing.
3. On the Registry menu, click Export Registry File.
4. In the File name box, type mslicensingbackup, and then click Save.
5. If you need to restore this registry key in the future, double-click mslicensingbackup.reg.
6. On the Edit menu, click Delete, and then click Yes to confirm the deletion of the MSLicensing registry subkey.
7. Close Registry Editor, and then restart the computer.
When the client is restarted, the missing registry key is rebuilt.To resolve this problem automatically, click the Fix this problem link. Then, click Run in the File Download dialog box.
http://technet.microsoft.com/en-us/library/cc756826(WS.10).aspx#BKMK_4
http://www.computing.net/answers/windows-2003/terminal-services-license-issue/3295.html
HKLM/SOFTWARE/MICROSOFT/MSlicensing
delete the complete MSlicensing key from the client computer which tries to establish a remote session.
after u delete this key , the client machine would once again be issue a temp license and it would be valid for another 120 days in case of 2003 licensing server .
Solution: If the previous solution does not resolve this problem, create a backup of the MSLicensing registry key and its subkeys on the client, and then remove the original key and subkeys by doing the following:
1. On the client, navigate to the following registry subkey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MSLicensing.
2. Click MSLicensing.
3. On the Registry menu, click Export Registry File.
4. In the File name box, type mslicensingbackup, and then click Save.
5. If you need to restore this registry key in the future, double-click mslicensingbackup.reg.
6. On the Edit menu, click Delete, and then click Yes to confirm the deletion of the MSLicensing registry subkey.
7. Close Registry Editor, and then restart the computer.
When the client is restarted, the missing registry key is rebuilt.To resolve this problem automatically, click the Fix this problem link. Then, click Run in the File Download dialog box.
http://technet.microsoft.com/en-us/library/cc756826(WS.10).aspx#BKMK_4
http://www.computing.net/answers/windows-2003/terminal-services-license-issue/3295.html
Configure Cisco Port Security on Switches and Router Interfaces
Cisco Port Security is a features that can help secure access to the physical network. Any Network admins nightmare is an unauthorised device or a PC connecting to the network. This could be as simple as an innocent guest plugging his PC into a floor port hoping to get an internet connection or a malicious intruder connecting to the network trying to gain access to confidential information.
Consequences could as bad as
• Virus, Spyware or malware infection from a PC unprotected PC
• A malicious hacker or an intruder gaining access to the network
• A malicous attacker launching a Denial of Service attack using MAC Address flooding
Cisco IOS has the port-security feature which can be used to restrict the MAC-Address of the devices that connects to each of the physical switchports.
Cisco Port-Security can help to
• restrict the MAC-address or addresses that can connect through a switchport [default: first connected device MAC Address]
• restrict the number of MAC-Addresses that can connect through a switchport [default is 1 and maximum is 128]
• set aging in minutes of the MAC Addresses registed
• Action to take when there is a violation detected (default is to disable the port and send an SNMP Trap message to the SNMP management server (if any))
For a switch port to be security enabled,
• the switchport cannot be a Trunk Port
• the switchport cannot be a destination port for a Switchport Analyzer (SPAN)
• the switchport cannot belong to an EtherChannel port-channel interface
• the switchport cannot be an 802.1X port
If you try to enable 802.1X on a secure port, an error message appears, and 802.1X is not enabled. If you try to change an 802.1X-enabled port to a secure port, an error message appears, and the security settings are not changed.
To enable Port Security on a Cisco Switch or router interface
Enter the interface config mode (say fa0/1)
Switch# conf t
Switch(config)# interface fastethernet 0/1
Switch(config-if)# switchport mode access
This sets the switchport to access mode. Default mode of "Dynamic desirable" cannot be configured as a secure port
Switch(config-if)# switchport port-security
This enables the port security on the switchport with the defaults [1 MAC Address allowed, 1st connected MAC Address, disable port if there is a violation]
If you know the MAC Address of the device and that thats the only device that connects to the swicthport (for example, A server on a Serverfarm switch) then you can set the MAC-Address manually.
Switchport(config-if)# switchport port-security mac-address 1111.2222.3333
Where 1111.2222.3333 is the MAC Address of the server. This will disable the secure port, if any other device other than the one with the above MAC-Address connects to the switch port.
If there is a switch or a hub (say 12 port or a 24 port) that connects to the switchport which you want to secure then you can set the maximum number ofMAC-Addresses that connects to the port and/or set the MAC-Address optionally.
Switchport(config-if)# switchport port-security max 12
This sets the maximum number of mac-address allowed on the secure port (default is 128).
One step further, if you want to manually add some or all of these MAC-Addresses then you can specify using the following command one for each MAC-Address
Switchport(config-if)# switchport port-security mac-address 0000.0000.0000
Switchport(config-if)# switchport port-security mac-address 0000.0000.1111
If now, you need to set the maximum number of MAC Addresses on the switchport but are aware that some or most of them are temporary ones (guest users or temporary workers) then you can set the aging time on the port-security which allowsMAC-Addresses on the Secure switchport will be deleted after the set aging time.
This helps to avoid a situation where obsolete MAC-Address occupies the table and saturates causing a violation (when the max number exceeds).
Switchport(config-if)# switchport port-security aging time 10
Where time is specified in minutes (10 mins in the above)
Now, you can set the action to be taken when there is a violation. The default is to shutdown the port and mark the port err-disabled.
For example,
Switchport(config-if)# switchport port-security violation protect
Where protect is the action taken when a violation event is triggered.
The actions are
protect — Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the maximum value.
restrict — Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the maximum value and causes the Security Violation counter to increment.
shutdown (default) — Puts the interface into the error-disabled state immediately and sends an SNMP trap notification.
To show the port-security,
Switch# show port-security interface fastethernet 0/1
Switch# show port-security
Switch# show port-security address
Consequences could as bad as
• Virus, Spyware or malware infection from a PC unprotected PC
• A malicious hacker or an intruder gaining access to the network
• A malicous attacker launching a Denial of Service attack using MAC Address flooding
Cisco IOS has the port-security feature which can be used to restrict the MAC-Address of the devices that connects to each of the physical switchports.
Cisco Port-Security can help to
• restrict the MAC-address or addresses that can connect through a switchport [default: first connected device MAC Address]
• restrict the number of MAC-Addresses that can connect through a switchport [default is 1 and maximum is 128]
• set aging in minutes of the MAC Addresses registed
• Action to take when there is a violation detected (default is to disable the port and send an SNMP Trap message to the SNMP management server (if any))
For a switch port to be security enabled,
• the switchport cannot be a Trunk Port
• the switchport cannot be a destination port for a Switchport Analyzer (SPAN)
• the switchport cannot belong to an EtherChannel port-channel interface
• the switchport cannot be an 802.1X port
If you try to enable 802.1X on a secure port, an error message appears, and 802.1X is not enabled. If you try to change an 802.1X-enabled port to a secure port, an error message appears, and the security settings are not changed.
To enable Port Security on a Cisco Switch or router interface
Enter the interface config mode (say fa0/1)
Switch# conf t
Switch(config)# interface fastethernet 0/1
Switch(config-if)# switchport mode access
This sets the switchport to access mode. Default mode of "Dynamic desirable" cannot be configured as a secure port
Switch(config-if)# switchport port-security
This enables the port security on the switchport with the defaults [1 MAC Address allowed, 1st connected MAC Address, disable port if there is a violation]
If you know the MAC Address of the device and that thats the only device that connects to the swicthport (for example, A server on a Serverfarm switch) then you can set the MAC-Address manually.
Switchport(config-if)# switchport port-security mac-address 1111.2222.3333
Where 1111.2222.3333 is the MAC Address of the server. This will disable the secure port, if any other device other than the one with the above MAC-Address connects to the switch port.
If there is a switch or a hub (say 12 port or a 24 port) that connects to the switchport which you want to secure then you can set the maximum number ofMAC-Addresses that connects to the port and/or set the MAC-Address optionally.
Switchport(config-if)# switchport port-security max 12
This sets the maximum number of mac-address allowed on the secure port (default is 128).
One step further, if you want to manually add some or all of these MAC-Addresses then you can specify using the following command one for each MAC-Address
Switchport(config-if)# switchport port-security mac-address 0000.0000.0000
Switchport(config-if)# switchport port-security mac-address 0000.0000.1111
If now, you need to set the maximum number of MAC Addresses on the switchport but are aware that some or most of them are temporary ones (guest users or temporary workers) then you can set the aging time on the port-security which allowsMAC-Addresses on the Secure switchport will be deleted after the set aging time.
This helps to avoid a situation where obsolete MAC-Address occupies the table and saturates causing a violation (when the max number exceeds).
Switchport(config-if)# switchport port-security aging time 10
Where time is specified in minutes (10 mins in the above)
Now, you can set the action to be taken when there is a violation. The default is to shutdown the port and mark the port err-disabled.
For example,
Switchport(config-if)# switchport port-security violation protect
Where protect is the action taken when a violation event is triggered.
The actions are
protect — Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the maximum value.
restrict — Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the maximum value and causes the Security Violation counter to increment.
shutdown (default) — Puts the interface into the error-disabled state immediately and sends an SNMP trap notification.
To show the port-security,
Switch# show port-security interface fastethernet 0/1
Switch# show port-security
Switch# show port-security address
Subscribe to:
Posts (Atom)
-
Here's how to fix this issue: 1. CTRL-Alt-Del to bring up Task Manager. 2. Click File | New Task(run). 3. Type regedit in the Run box...
-
When running on Windows, Moshell uses a unix emulator known as Cygwin. Go directly to step 13 if you have already installed and configured c...
-
If the Session time out is not configured, or the logged on users are not available, you wont be able to logon to the machine. To overcome ...
