Huawei Certified ICT Expert – Data Center Network (HCIE-DCN) — Question 5
Which of the following is wrong about DHCP Snooping?
Answer options
- A. DHCP Snooping can prevent illegal attacks by setting trusted ports (all interfaces are untrusted by default)
- B. Enable DHCP Snooping globally, without any post parameters, the device only processes DHCPv4 messages by default
- C. Enable the DHCP Snooping function in the interface view, then all the DHCP message command functions under the interface will take effect
- D. Enable the DHCP Snooping function in the VLAN view, and the command function of DHCP messages belonging to the VLAN received by all interfaces of the device will take effect
Correct answer: A
Explanation
Option A is correct because DHCP Snooping indeed designates all interfaces as untrusted by default and allows trusted ports to prevent unauthorized DHCP traffic. The other options accurately describe the behavior and configuration of DHCP Snooping in various contexts, making them correct statements.