ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 380 - 350-601 discussion

Report
Export

Refer to the exhibit.

An engineer configures port security on a Cisco Nexus 9000 Series Switch. The requirement is to prevent any newly learned MAC addresses from forwarding traffic on the interface. Also, the already learned MAC addresses must not be affected by the changes. Which configuration meets these requirements?

A.

switchport port-security violation shutdown

Answers
A.

switchport port-security violation shutdown

B.

switchport port-security violation isolate

Answers
B.

switchport port-security violation isolate

C.

switchport port-security violation protect

Answers
C.

switchport port-security violation protect

D.

switchport port-security violation restrict

Answers
D.

switchport port-security violation restrict

Suggested answer: C

Explanation:

The 'protect' violation mode in port security is designed to drop packets with unknown source MAC addresses without affecting the interface's state. This mode ensures that traffic from already learned MAC addresses continues to be forwarded while preventing any new MAC addresses from forwarding traffic until a sufficient number of secure MAC addresses are removed or the maximum count is increased. This configuration aligns with the requirement to not affect already learned MAC addresses.

asked 10/10/2024
Joe Pardee
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first