The network security policy requires that only one host be permitted to attach dynamically to each switch interface. If that pol

admin2019-04-08  41

问题 The network security policy requires that only one host be permitted to attach dynamically to each switch interface. If that policy is violated, the interface should shut down. Which two commands must the network administrator configure on the 2950 Catalyst switch to meet this policy?

选项 A、Switch1(config-if)# switchport port-security maximum 1
B、Switch1(config)# mac-address-table secure
C、Switch1(config)# access-list 10 permit ip host
D、Switch1(config-if)# switchport port-security violation shutdown
E、Switch1(config-if)# ip access-group 10

答案A,D

解析 switchport port-security maximum 1这个命令是配置这个端口为安全模式且只允许有学习一个mac地址。Switchport port-security violation shutdown:这句命令的意思是如果借口违反了安全策略就shutdown该接口。
转载请注明原文地址:https://kaotiyun.com/show/DehZ777K
0

最新回复(0)