Implementing Cisco IP Switched Networks (CCNP SWITCH, legacy) — Question 34
In which two ways can a port respond to a port-security violation? (Choose two.)
Answer options
- A. The port enters the err-disabled state
- B. The port enters the shutdown state
- C. The port triggers an EEM script to notify support staff and continues to forward traffic normally
- D. The SecurityViolation counter is incremented and the port sends an SNMP trap
- E. The SecurityViolation counter is incremented and the port sends a critical syslog message to the console
- F. The port immediately begins to drop all traffic
Correct answer: A, D
Explanation
Option A is correct because when a port-security violation occurs, the port typically enters the err-disabled state to prevent further issues. Option D is also correct as the SecurityViolation counter is incremented, and an SNMP trap is sent to notify management systems of the violation. The other options do not accurately describe the standard behavior of ports under these circumstances.