PrepAway - Latest Free Exam Questions & Answers

what two conclusions can be deduced?

Refer to the exhibit. Based on the running configuration that is shown for interface FastEthernet0/2, what two conclusions can be deduced? (Choose two)

PrepAway - Latest Free Exam Questions & Answers

A.
Connecting a host with MAC address 0000.0000.4147 will move interface FastEthernet0/2 into error disabled state.

B.
The host with address 0000.0000.4141 is removed from the secure address list after 5 seconds of inactivity.

C.
The sticky secure MAC addresses are treated as static secure MAC addresses after the running configuration is saved to the startup configuration and the switch is restarted.

D.
Interface FastEthernet0/2 is a voice VLAN port.

E.
The host with address 0000.0000.000b is removed from the secure address list after 300 seconds.

Explanation:

The time aging_time keyword specifies the aging time for this port. Valid range for aging_time is from 0 to 1440 minutes. If the time is equal to 0, aging is disabled for this port. In this case, the aging time is set for 5 minutes, or 300 seconds. You can configure an interface to convert the dynamic MAC addresses to sticky secure MAC addresses and to add them to the running configuration by enabling sticky port security. To enable sticky port security, enter the switchport port-security mac-address sticky command. When you enter this command, the interface converts all the dynamic secure MAC addresses, including those that were dynamically learned before sticky learning was enabled, to sticky secure MAC addresses. The sticky secure MAC addresses do not automatically become part of the configuration file, which is the startup configuration used each time the switch restarts. If you save the running config file to the configuration file, the interface does not need to relearn these addresses when the switch restarts.
Reference:
http://www.cisco.com/en/US/docs/switches/lan/catalyst4500/12.2/25sg/configuration/guide/port_sec.html


Leave a Reply