SV-220658r539671_rule
V-220658
SRG-NET-000362-L2S-000024
CISC-L2-000120
CAT II
10
Configure the switch to have Unknown Unicast Flood Blocking (UUFB) enabled as shown in the configuration example below:
SW1(config)#int range g0/0 - 9
SW1(config-if-range)#switchport block unicast
Review the switch configuration to verify that UUFB is enabled on all access switch ports as shown in the configuration example below:
interface GigabitEthernet0/0
switchport block unicast
!
interface GigabitEthernet0/1
switchport block unicast
…
…
…
interface GigabitEthernet0/9
switchport block unicast
If any access switch ports do not have UUFB enabled, this is a finding.
V-220658
False
CISC-L2-000120
Review the switch configuration to verify that UUFB is enabled on all access switch ports as shown in the configuration example below:
interface GigabitEthernet0/0
switchport block unicast
!
interface GigabitEthernet0/1
switchport block unicast
…
…
…
interface GigabitEthernet0/9
switchport block unicast
If any access switch ports do not have UUFB enabled, this is a finding.
M
4071