A network administrator wants to ensure that only the server can connect to port Fa0/1 on a Catalyst switch. The server is plugg

admin2019-04-08  25

问题 A network administrator wants to ensure that only the server can connect to port Fa0/1 on a Catalyst switch. The server is plugged into the switch Fa0/1 port and the network administrator is about to bring the server online. What can the administrator do to ensure that only the MAC address of the server is allowed by switch port Fa0/1?

选项 A、Configure port Fa0/1 to accept connections only from the static IP address of the server.
B、Employ a proprietary connector type on Fa0/1 that is incompatible with other host connectors.
C、Configure the MAC address of the server as a static entry associated with port Fa0/1.
D、Bind the IP address of the server to its MAC address on the switch to prevent other hosts from spoofing the server IP address.
E、Configure port security on Fa0/1 to reject traffic with a source MAC address other than that of the server.

答案C,E

解析 交换机的f0/1端口上仅仅允许转发server的流量,因此我们可以配置将server的mac地址和交换机的端口进行绑定。然后用在端口f0/1上配置端口安全以过滤其他除server外的流量。
转载请注明原文地址:https://kaotiyun.com/show/tehZ777K
0

最新回复(0)