Detemining MAC addresses on WS-C2950G switches

On my old WS-C3500XL switches (running IOS ver 12.0(5)WC5(fc1), I could input the following IOS command and figure out the MAC address of hosts that are connected to any switch port interface (int fa0/1 in the example below):
3500xl# show mac int fa0/1
Non-static Address Table:
Destination Address Address Type VLAN Destination Port
0800.20a4.eefe Dynamic 6 FastEthernet0/1
I work in the aerospace industry and this was very useful for me to verify hosts were connected to the correct switch port (especially in remote locations). It also allowed me to verify more easily find out if someone who shouldn't be connected to the net is (i.e. a user that might disconnect a Sun host to put his PC on the net).
On my newer WS-C2950G Catalyst 2950 switches running IOS ver 12.1(22)EA1b(fc1), it no longer supports this same IOS command. Is there another command I can use to get this info?
Thanks,
Scott

Hi Scott,
You can achieve the same with the following command
sh mac-address-table interface
eg
2950#sh mac-address-table interface fa 0/1
Non-static Address Table:
Destination Address Address Type VLAN Destination Port
0015.2bd7.1821 Dynamic 25 FastEthernet0/1
HTH
Narayan

Similar Messages

  • Arp aging time on router and mac address aging time on switches set close t

    Hi,
    appreciate some advice on the following:
    what is the benefit of setting arp aging time on router and mac address aging time on switches close to each other?
    Thanks,
    Christina

    Hi,
    based on the below output, do you think implementing it will benefit? Thanks.
    C2950#sh int fa0/43
    FastEthernet0/43 is up, line protocol is up (connected)
    Hardware is Fast Ethernet, address is 000d.5e11.4e2b (bia 000d.5e11.4e2b)
    MTU 1500 bytes, BW 100000 Kbit, DLY 1000 usec,
    reliability 255/255, txload 7/255, rxload 2/255
    Encapsulation ARPA, loopback not set
    Keepalive set (10 sec)
    Full-duplex, 100Mb/s
    input flow-control is off, output flow-control is off
    ARP type: ARPA, ARP Timeout 04:00:00
    Last input never, output 00:00:00, output hang never
    Last clearing of "show interface" counters never
    Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
    Queueing strategy: fifo
    Output queue: 0/40 (size/max)
    5 minute input rate 933000 bits/sec, 149 packets/sec
    5 minute output rate 2981000 bits/sec, 263 packets/sec
    2819781393 packets input, 3782332886 bytes, 0 no buffer
    Received 266693 broadcasts (0 multicast)
    0 runts, 0 giants, 0 throttles
    0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
    0 watchdog, 0 multicast, 0 pause input
    0 input packets with dribble condition detected
    4015025747 packets output, 2328228393 bytes, 0 underruns
    0 output errors, 0 collisions, 2 interface resets
    0 babbles, 0 late collision, 0 deferred
    0 lost carrier, 0 no carrier, 0 PAUSE output
    0 output buffer failures, 0 output buffers swapped out
    C2950#

  • MAC address table CPU entries

    Hi,
    What are mac address cpu entries?
    Vlan    Mac Address       Type        Ports
    All    0100.0ccc.cccc    STATIC      CPU
    All    0100.0ccc.cccd    STATIC      CPU
    All    0180.c200.0000    STATIC      CPU
    All    0180.c200.0001    STATIC      CPU
    All    0180.c200.0002    STATIC      CPU
    All    0180.c200.0003    STATIC      CPU
    All    0180.c200.0004    STATIC      CPU
    All    0180.c200.0005    STATIC      CPU
    All    0180.c200.0006    STATIC      CPU
    All    0180.c200.0007    STATIC      CPU
    All    0180.c200.0008    STATIC      CPU
    All    0180.c200.0009    STATIC      CPU
    All    0180.c200.000a    STATIC      CPU
    All    0180.c200.000b    STATIC      CPU
    All    0180.c200.000c    STATIC      CPU
    All    0180.c200.000d    STATIC      CPU
    All    0180.c200.000e    STATIC      CPU
    All    0180.c200.000f    STATIC      CPU
    All    0180.c200.0010    STATIC      CPU
    All    ffff.ffff.ffff    STATIC      CPU
    also, what is last entry for? all ff's
    thanks,
    vish

    They are just local MAC addresses belonging to the switch.
    The last entry is the broadcast MAC address. 
    Perfectly normal.

  • MAC Address-Table Move Update Feature

    Hi guys
    Does 6500 SUP720/2T support MAC Address-Table Move Update Feature?
    I cannot find it in anywhere..
    Thanks very much!
    QXZ

    Hi,
    Please refer following link :
    http://www.cisco.com/en/US/products/hw/switches/ps708/products_tech_note09186a00807347ab.shtml
    CAM
    —All Catalyst switch models use a CAM table for           Layer 2 switching. As frames arrive on switch ports, the source MAC addresses           are learned and recorded in the CAM table. The port of arrival and the VLAN are           both recorded in the table, along with a timestamp. If a MAC address learned on           one switch port has moved to a different port, the MAC address and timestamp           are recorded for the most recent arrival port. Then, the previous entry is           deleted. If a MAC address is found already present in the table for the correct           arrival port, only its timestamp is updated.
    regards,
    Ajay Kumar

  • Arp/mac address cache timeouts

    Anybody know how long a mac address stays in a Cisco IOS arp cache when issuing "show ip arp"? How about a mac address in a CatOS switch when issuing "show cam dynamic". What constitutes the length of time an arp entry is cached?

    Hello,
    the default ARP timeout (show ip arp) is 14400 seconds, which equals 4 hours. The CAM default agingtime (show cam dynamic) is 300 seconds, which equals 5 minutes. That means that the ARP or CAM entry will stay in the cache for a minimum of 4 hours and 5 minutes, respectively...
    Is that what you are asking ?
    Regards,
    GP

  • HSRP - Duplicate address on Vlan, sourced by mac-address

    Hi ,
    Network structure
    Switch A --- Customer firewall 1
       |                
    Switch B  --- Customer firewall2
    May be some one can help me.
    There was a nagious alert yesterday and on investigation I found the 'Duplicate address x.x.x.x(VIP) on Vlanxxx, sourced by 0006.b19c.c5d9' error
    It a HA feed from our switches which is going to customer firewalls.
    On further investigation I have found on our switch A the ARP table is not learning the VIP address from this mac-address where as on switch B is learning the VIP address through mac 0006.b10c.c8d9 which is customer sonic firewall which is not a normal behaviour.   
    Our switches are Cisco 3560 switch.
    Please if you could let me know what causing this.

    Hi mcgowan,
    Yes, there is duplicate MAC. But, its duplicate between interface vlan address and virtual MAC address on HSRP.
    when I type command :
    show mac address | i 0000.0c07.ac01
    It shows me :
    100    0000.0c07.ac01    STATIC      CPU
    I think this MAC generate by system on HSRP. Currently I shutdown interface vlan 100 on switch A, like as your suggestion. But the impact is my client will get trouble when switch B is down, because HSRP is not running well.
    Regards,
    Rakhmad

  • Tracking mac address on port

    Hi
    I search a tools to detect on witch switch and on witch port are connected a client by his mac address ( in a cluster switch environement as well on standalone switch)
    I must rebuild my patch pannel diagramm and detect free port and free outlet in our sites)
    thanks

    I think there is a tool called Location manager to track to which port a device is connected to.But I have seen this used in wireless environment.Not sure about its usage in locating client.But I think this can also be used to locate client pc.

  • Case of All zero MAC Address.......

    Haii all,
    Have anybody faced with a case of all zero MAC(Medium access control)address? Is there any IEEE standards regarding the zero mac address? pleas give me some answers or some informative links...
    Thanks in advance
    Sumode

    What does that have to do with j2me?I am not refering this to j2me. But a doubt regarding with the wireless application that a zero mac address is a standard or not?. how it affects a switch device when a zero mac address came to a switch device? I just want to make clear of this things. can anybody help?

  • MAC address flapping on 2 x Cisco 3750 (Stacked)

    Hi All,
    I am having some issue with my connectivity.
    The setup with HP virtual connect (VC) is as below:
    Server A NIC 1 -- VC 1 -- Switch A
                 NIC 2 -- VC 2 -- Switch A
    Server B NIC 1 -- VC 1 -- Switch A
                 NIC 2 -- VC 2 -- Switch A
    The VLAN configuration are done on individual NIC card on the servers and the switchport on Switch A facing the VC connect are all on trunk mode.
    Currently I am seeing MAC address flapping on my Switch. The switches are CISCO 3750 and are being stacked so it appears logically as 1 switch.
    Any idea what might be the problem?
    Below is an output of the flapping on the switch.
    %SW_MATM-4-MACFLAP_NOTIF: Host xxxx.xxxx.0637 in vlan 1 is flapping between port Gi2/0/3 and port Gi2/0/5
    %SW_MATM-4-MACFLAP_NOTIF: Host xxxx.xxxx.46eb in vlan 1 is flapping between port Gi1/0/5 and port Gi1/0/7
    %SW_MATM-4-MACFLAP_NOTIF: Host xxxx.xxxx.661d  in vlan 1 is flapping between port Gi2/0/15 and port Gi2/0/7

    Hi,
    Problem of MAC FLAP could resolve by following methods:.
    Check with the server providers to see if the OS and server platform support 'NIC' Teaming (NIC Bonding).
    FYI - NIC teaming allows users to group two or more physical NICs into a single logical network device called a bond. Once a logical NIC is configured, the virtual machine is not aware of the underlying physical NICs. Packets sent to the logical NIC are dispatched to one of the physical NICs in the bond and packets arriving at any of the physical NICs are automatically directed to the appropriate logical NIC. If one of the underlying physical NICs is broken or its cable has been unplugged, server will detect the fault condition and automatically move traffic to another NIC in the bond.
    Hope that help
    If helpful do rate
    Ganesh.H

  • Switch learning mac addresses

    In a video that I watched a few days ago someone explained a basic process of booting up a switch and how a switch learns mac addresses. He said something that I would like to discuss. I know... it is not important but want to clarify :)
    PC1---SW1----PC2
    PC1 wants to send sth to PC2. In the video it was said:
    'a frame arrives at SW1 and SW1 learns the mac address of pc1 but it does not know the mac address of pc2 so it will flood this frame to all ports'
    My uderstanding is that it all starts with an arp message: pc1 does not know the mac address and sends an arp and it will allow the switch to learn both mac addresses: pc1 and pc2. I am too lazy to do it in wireshark but did that in PT and that's what I saw as well. After the arp - switch learnt both macs and did not flood the frame.
    Am I correct? I know it is not important but... ;-)

    It may be possible that there was some aspect of the switch environment in the video that would change the behavior (perhaps something like a long timer for the ARP cache in the PC and a short MAC ageing timer on the switch). But in general you are correct. PC1 would send an ARP request as a broadcast, the switch would learn the MAC of PC1 and forward the ARP request. When PC2 sends its response to the ARP request the switch would learn the MAC of PC2 and forward the ARP response. So the switch should have both MAC addresses when data traffic begins to flow.
    HTH
    Rick

  • Relearning of MAC addresses during STP convergence between ports in a switch

    I found a problem in STP convergence between two redundant links. when a active link is brought down, traffic is converging into blocked link(port), but relearning of MAC addresses is not happening, which i mean ARP request is not initiated by the switch. Anyone can help in this issue ?

    Hey,
    Configure uplinkfast. FYI:
    http://www.cisco.com/c/en/us/support/docs/lan-switching/spanning-tree-protocol/10575-51.html
    HTH.
    Regards,
    RS

  • Discovering MAC addresses for Switch ports

    Hello and thanks for looking at my question,
    My company has inherited a network which has some very poor documentation. We really have no clue, nor does the customer, what machines are connected to what switch ports.
    My co-worker and I were discussing the best way to find this out with the least amount of effort, but can't agree on a single solution. Any recommendations would be greatly appreciated.
    Thanks.
    Sincerely,
    Brent

    Brent,
    After you do the 'sho arp' and now have MAC to IP translation, do a 'sho mac-address table' to show MAC to port translation. Save both tables to an Excel spreadsheet and tie them together. You should be able to come up with a good cross reference table (depending upon your Excel skills).
    This also gives you a switch-by-switch breakout. It's also a very helpful troubleshooting method to find rouge devices and shut down a port (for instance).
    Hope this is helpful.
    Jim

  • Stopping MAC addresses on 3560 switch interfaces

    Hi,
    I would like to stop certain MAC addresses connecting to the network via a 3560 switch and have configured the config below for VLAN 1. All interfaces belong to VLAN 1. Can anyone tell me if this is the correct config or have I missed something?
    mac access-list extended Bad_Hosts
    permit host 0011.434c.d9bf any 0x806 0x0
    permit host 0011.434a.8026 any 0x806 0x0
    permit host 000b.5d2a.23e3 any 0x806 0x0
    permit host 000b.5d0e.4019 any 0x806 0x0
    vlan access-map MAC 10
    action drop
    match mac address Bad_Hosts
    vlan access-map MAC 20
    action forward
    vlan filter MAC vlan-list 1
    Regards
    Mark
    Network Specialist

    It look like, all the host 'll be reject.
    Try:
    mac access-list extended Bad_Hosts
    deny host 0011.434c.d9bf any 0x806 0x0
    deny host 0011.434a.8026 any 0x806 0x0
    deny host 000b.5d2a.23e3 any 0x806 0x0
    deny host 000b.5d0e.4019 any 0x806 0x0
    permit any any
    vlan access-map MAC 10
    match mac address Bad_Hosts
    action forward
    vlan access-map MAC 20
    action drop
    vlan filter MAC vlan-list 1
    Please, hope this help and rate this post.

  • How to find which port on the switch that it connected with Mac address?

    Hi,
    I am trying to find which port of the switches it connected to thru mac-address?
    I am able to get the mac-address from the ip address when i do
    "show ip dhcp binding snooping" at the core switch.
    But when I move on to the Edge switch to check which PC with this Mac address connected to the port,i returned with no result.(onli trunk port result)
    I use sh ip arp | inc 000d.60cb.445d
    but didn't give me which port it connected to.
    How to solve this problem?
    thanks!
    KL

    Hi KL,
    If you are already on the edge switch you can run a command "sh mac-address-table address " and it will give you the port number.
    Incase you get a port which is a trunk port that means the end device does not exist on this switch and exist on some downstream switch. So you can just find out the ip address of the downstream switch with "sh cdp neigh detail" command and connect to that downstream switch and then again issue the command "sh mac-address-table address " and check the port number and follow the above steps till the time you get the switch on whcih end host is connected.
    HTH, if yes please rate the post.
    Ankur

  • PC22224 switch fails on boot with message "Invalid switch MAC address"

    Ok moderators, I know this is a nonsupported product, but you moved all Switch messages to the archive.  This seemed to be the most appropriate folder for it.  Hope that's ok?
    I have a NEW (can you believe it?) PC22224 managed Cisco/Linksys switch with a problem.  When it boots, it passes all tests until it is almost ready to run, then I get this message:
    Checking file integrity..... Done
    Decompressing Code Image.... Done
    System PANIC.....
    Invalid switch MAC address
    Does anyone know how to correct this problem?  I can find nothing on it anywhere on the web.
    Thanks in advance!
    Kid

    Hi kidbyte!
    All Linkys Business Series are now part of Cisco Small Business. For
    discussions about this product, please go here.

Maybe you are looking for