nerdexam
CiscoCisco

200-301 · Question #124

200-301 Question #124: Real Exam Question with Answer & Explanation

The correct answer is A: The security violation counter dose not increment. protect - Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the maximum value. restrict- Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the

Submitted by manish99· Mar 5, 2026Network Access

Question

Refer to the exhibit. Which two events occur on the interface,if packets from an unknown Source address arrive after the interface learns the maximum number of secure MAC address? (Choose two)

Options

  • AThe security violation counter dose not increment
  • BThe port LED turns off
  • CThe interface is error-disabled
  • DA syslog message is generated
  • EThe interface drops traffic from unknown MAC address

Explanation

protect - Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the maximum value. restrict- Drops packets with unknown source addresses until you remove a sufficient number of secure MAC addresses to drop below the maximum value and causes the SecurityViolation counter to increment. shutdown - Puts the interface into the error-disabled state immediately and sends an SNMP trap

Topics

#Port Security#Port security violation modes#Secure MAC addresses

Community Discussion

No community discussion yet for this question.

Full 200-301 PracticeBrowse All 200-301 Questions