ArubaS1500-24P) #show ap-rogue-enforcement
rogue-ap-enforcement "default"
------------------------------
Parameter Value
--------- -----
Enforce Rouge AP Disabled
Action default
Auto Recovery Time 300
Check blacklisted mac-address send by IAP
(ArubaS1500-24P) #show lldp neighbor interface gigabitethernet 2/0/0 detail
Interface: gigabitethernet2/0/0, Number of neighbors: 1
------------------------------------------------------------
<Output Truncated>
Autoneg capability:
10Base-T, HD: yes, FD: yes
100Base-T, HD: yes, FD: yes
1000Base-T, HD: yes, FD: yes
Media attached unit type: 1000BaseTFD - Four-pair Category 5 UTP, full duplex mode (30)
MAC: 44:6d:57:b4:2e:39: Blacklist
MAC: 60:d8:19:5b:d2:fd: Blacklist
MAC: 6c:f3:7f:c4:4c:72: Blacklist
802.3 Power:
Port ID: MAC 6c:f3:7f:c3:67:2a
Port Description: eth0
MDI Power:
Supported: No
Enabled: No
<Output Truncated>
Check interface error-disabled state
(ArubaS1500-24P) #show port-error-recovery
Layer-2 Interface Error Information
-----------------------------------
Interface Error Error seen time Recovery time
--------- ----- --------------- -------------
GE0/0/47 Blacklisted device detected 2014-07-23 17:08:45 (PST) 2014-07-23 17:18:44 (PST)
GE1/0/47 Blacklisted device detected 2014-07-23 17:08:41 (PST) 2014-07-23 17:18:40 (PST)
GE2/0/23 Blacklisted device detected 2014-07-23 17:08:43 (PST) 2014-07-23 17:18:42 (PST)
(ArubaS1500-24P) #
Bring Up error-disabled port
(ArubaS1500-24P) #clear port-error-recovery
Troubleshooting :
Log generated when blacklisted mac-address is detected on wired interface
Information is logged in security logs.
(ArubaS1500-24P) (config) # logging level errors security
(ArubaS1500-24P)# show log security 10 | include Blacklisted
Jul 24 06:59:31 :128009: <ERRS> |l2m| Blacklisted MAC seen on gigabitethernet2/0/23, shutting down the interface
Jul 24 06:59:31 :128010: <ERRS> |l2m| Blacklisted MAC 6c:f3:7f:c4:4c:72 on interface GE0/0/47
Related Links: