Cisco commands to find rogue access point connected

ciscoSecuritywirelesswlc

Is there any methods in cisco switches (without using extra devices or softwares)to detect and prevent the unauthorised access points connected? I found a method using wireless lan controller (WLC). But some one said that there is another method using commands to block the unauthorised access points. Is there any such methods?

Best Answer

Try with Port Security

Port security allows you to specify a maximum number of MAC addresses per interface and a security policy if the maximum number of addresses is reached. Since an AP is a L2 device your switch will learn multiple MAC addresses from a single ethernet interface (as if it was a switch).