CCNP switch slides 3 Flashcards
source
http://quizlet.com/3373148/ccnp-switch-deck-3-flash-cards/
what are the 5 STP port roles?
root, designated, blocking, alternate, forwarding (host)
what does Root Guard do?
controls where candidate root bridges can be connected and found on a network
How does Root Guard work?
a port can only forward or relay BPDUs, but can’t receive them, disabled by default, enabled per-port, blocks port when superior BPDUs are received
How is Root Guard used?
on ports where you never expect to find a root bridge for a VLAN
What is BPDU Guard?
if any BPDU is received on a port, it puts the port into the errdisable state
How can BPDU Guard be configured?
globally or per-port
What does Loop Guard do?
tracks BPDUs on nondesignated ports. When those BPDUs stop coming, the port is put into loop-inconsistent state and blocks
How does loop guard block ports?
only for the offending VLAN on the port
What does UDLD do?
protects STP when a physical malfunction only allows traffic in 1 direction, even though the link shows as up (cisco proprietary)
How does UDLD work?
sends special layer 2 UDLD frames and expects an echo. Both ends must be configured for UDLD
How should UDLD be configured?
the configureable UDLD interval must be less than max age plus two intervals of forward delay
What are the 2 UDLD modes?
normal and aggressive
What is UDLD normal mode?
if a unidirectional link is detected, the port continues normally, but the port is marked as undetermined and a syslog is generated
What is UDLD aggressive mode?
If a unidirectional link is detected, the switch doesn’t try to reestablish the link. ULD msgs are sent once/sec for 8 seconds, then the port is err-disabled
How is UDLD configured?
per-port or globally for all fiber-optic ports. Can be enabled globally, but will only affect fiber ports
What does BPDU filtering do?
effectively stops STP on filtered ports
Where is root guard enabled?
all ports where root isn’t expected
where is BPDU guard enabled?
all user ports that have portfast enabled
where is loop guard enabled?
all nondesignated ports, but ok for all ports
where is UDLD enabled?
all fiber-optic links between switches (must be enabled on both ends)
Can loop guard and udld be used together?
yes
can root guard and udld be used together?
yes
can root guard and loop guard be used together
no
can root guard and BPDU guard be used together?
no