Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Notifications
Login / Register
Community
Community
Notifications
close
  • Forums
  • Knowledge Center
  • Events & Webinars
  • Ideas
  • Blogs
Help
Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Login / Register
Sustainability
Sustainability

We Value Your Feedback!
Could you please spare a few minutes to share your thoughts on Cloud Connected vs On-Premise Services. Your feedback can help us shape the future of services.
Learn more about the survey or Click here to Launch the survey
Schneider Electric Services Innovation Team!

AP9617 and Cisco Port security on Switch

APC UPS Data Center & Enterprise Solutions Forum

Schneider, APC support forum to share knowledge about installation and configuration for Data Center and Business Power UPSs, Accessories, Software, Services.

cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • Home
  • Schneider Electric Community
  • APC UPS, Critical Power, Cooling and Racks
  • APC UPS Data Center & Enterprise Solutions Forum
  • AP9617 and Cisco Port security on Switch
Options
  • Mark Topic as New
  • Mark Topic as Read
  • Float this Topic for Current User
  • Bookmark
  • Subscribe
  • Mute
  • Printer Friendly Page
Invite a Co-worker
Send a co-worker an invite to the portal.Just enter their email address and we'll connect them to register. After joining, they will belong to the same company.
You have entered an invalid email address. Please re-enter the email address.
This co-worker has already been invited to the Exchange portal. Please invite another co-worker.
Please enter email address
Send Invite Cancel
Invitation Sent
Your invitation was sent.Thanks for sharing Exchange with your co-worker.
Send New Invite Close
Top Experts
User Count
BillP
Administrator BillP Administrator
5060
voidstar_apc
Janeway voidstar_apc
196
Teken
Spock Teken
113
Erasmus_apc
Sisko Erasmus_apc
112
View All

Invite a Colleague

Found this content useful? Share it with a Colleague!

Invite a Colleague Invite
Solved Go to Solution
Back to APC UPS Data Center & Enterprise Solutions Forum
Solved
Anonymous user
Not applicable

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
8
1288
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

AP9617 and Cisco Port security on Switch

Hi Everyone,

I am wondering if anyone else have had this issue - 

We have got Cisco switch infrastructure with port security on them. Port Security is a Cisco port config that captures a MAC address once the device is plugged in and saves it in a list so that no other device can be plugged in there. If a new mac address is seen on this port, port will be disabled. A sys admin will then have to manually enable the port.

Now, We are using various UPS's with AP9617 card in that has been configures with static ip for monitoring.

For some unknown reason on all the switches that has 'Port Security ' on and a AP9617 plugged in, are getting disabled everyday. I have to then manually enable them to Monitor the UPS again. 

This only started happening once we had ' Port security' enabled. This happens more or less everyday/everynight on various switches. I have tried changing speed and duplex settings on the switches - no joy.

This is so annoying and not normal. Any ideas ?

Regards,

Sheikh

Labels
  • Labels:
  • UPS Management Devices & PowerChute Software
Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

  • All forum topics
  • Previous Topic
  • Next Topic

Accepted Solutions
voidstar_apc
Janeway voidstar_apc
Janeway

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

In that case, because:

- The NMC has no built-in knowledges of Cisco's MAC and

- The MAC belongs to the router and will be on all packets coming from outside of the subnet

I suspect if you use wireshark, you'll find that a recieved packet got retransmitted.

See Answer In Context

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

Replies 8
BillP
Administrator BillP Administrator
Administrator

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

I haven't heard anyone mention this in relation to APC devices. Does the switch store any type of log as to when the port was disabled and why - like does it keep a record of what MAC address was supposedly seen? I imagine the answer may be no or else you would've mentioned it.

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

Anonymous user
Not applicable

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

Hi Angela,

I have not looked in the logs yet. However, I am sure this is gonna happen again and I will have look at the log as soon as it happens. Will post it straight way.

Regards,

Sheikh

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

Anonymous user
Not applicable

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

Hi,

had a look at the logs..the port saw a different mac address ( ? ) and went into err-disable mode.

Any ideas why this would happen ?

Do these cards change mac address randomly for some reason ?

Regards,

Sheikh

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

voidstar_apc
Janeway voidstar_apc
Janeway

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

It's not designed to change MAC addresses however it would not surprise me if a packet got out with a different MAC address. If this is happening once a day, I'd leave Wireshark running for the day. While the AP9617 is no longer sold and isn't receiving updates, perhaps the other MAC address is predictable and can be added to the list or perhaps Wireshark will implicate a specific network protocol that can be disabled.

As an end-user, I wish Cisco had never invented port security. Maybe the NMC needs a nice sleep proxy server...

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

BillP
Administrator BillP Administrator
Administrator

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

Does it show you what MAC address it saw? Just curious if it started with APC's vendor code 00 C0 B7 or if it is something totally different.

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

Anonymous user
Not applicable

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

I should have made a note of that mac address when i looked at it last time....I have 2 more that happened yesterday night but..I have only looked at it now. So, the switch log has filled up with ports up and downs..

I will keep an eye on these..and see if i can get the mac address 

cheers for everyone's input here..

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

Anonymous user
Not applicable

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1287
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

Right , here is the mac that caused the err-disable state - 0022.bd34.5400 belongs to cisco systems. : )

This mac belongs to the router as in our core switch. So, for some reason these cards are spoofing the mac address of the default gateway ( ? )

Any ideas guys..?

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

voidstar_apc
Janeway voidstar_apc
Janeway

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

0 Likes
0
1288
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2021-07-08 12:03 AM . Last Modified: ‎2024-02-29 11:36 PM

In that case, because:

- The NMC has no built-in knowledges of Cisco's MAC and

- The MAC belongs to the router and will be on all packets coming from outside of the subnet

I suspect if you use wireshark, you'll find that a recieved packet got retransmitted.

Reply
Contact Support

Link copied. Please paste this link to share this article on your social media post.

Preview Exit Preview

never-displayed

You must be signed in to add attachments

never-displayed

 
To The Top!

Forums

  • APC UPS Data Center Backup Solutions
  • EcoStruxure IT
  • EcoStruxure Geo SCADA Expert
  • Metering & Power Quality
  • Schneider Electric Wiser

Knowledge Center

Events & webinars

Ideas

Blogs

Get Started

  • Ask the Community
  • Community Guidelines
  • Community User Guide
  • How-To & Best Practice
  • Experts Leaderboard
  • Contact Support
Brand-Logo
Subscribing is a smart move!
You can subscribe to this board after you log in or create your free account.
Forum-Icon

Create your free account or log in to subscribe to the board - and gain access to more than 10,000+ support articles along with insights from experts and peers.

Register today for FREE

Register Now

Already have an account? Login

Terms & Conditions Privacy Notice Change your Cookie Settings © 2025 Schneider Electric

This is a heading

With achievable small steps, users progress and continually feel satisfaction in task accomplishment.

Usetiful Onboarding Checklist remembers the progress of every user, allowing them to take bite-sized journeys and continue where they left.

of