Which port-security violation mode drops traffic from unknown MAC addresses and sends an SNMP trap?
Choose an answer
Tap an option to check your answer.
Correct answer: restrict.
Why this is the answer
The 'restrict' port-security violation mode drops packets from unknown source MAC addresses, increments the violation counter, and generates a Simple Network Management Protocol (SNMP) trap and a syslog message. This provides notification of the violation without shutting down the port. 'shutdown' is incorrect because it disables the port and puts it into an error-disabled state, requiring manual intervention or err-disable recovery. 'protect' is incorrect because it drops packets from unknown source MAC addresses but does not increment the violation counter or send any notifications. 'shutdown VLAN' is not a valid port-security violation mode.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed