SV-76693r1_rule
V-62203
SRG-NET-000512
SRG-NET-000512-L2S-000008
CAT II
10
Remove the assignment of the default VLAN from all access switch ports.
Review the switch configurations and verify that no access switch ports have been assigned membership to the default VLAN (i.e., VLAN 1). A good method of ensuring there is not membership to the default VLAN is to have it disabled (i.e., shutdown) on the switch. This technique does not prevent switch control plane protocols such as CDP, DTP, VTP, and PAgP from using the default VLAN.
If there are access switch ports assigned to the default VLAN, this is a finding.
V-62203
False
SRG-NET-000512-L2S-000008
Review the switch configurations and verify that no access switch ports have been assigned membership to the default VLAN (i.e., VLAN 1). A good method of ensuring there is not membership to the default VLAN is to have it disabled (i.e., shutdown) on the switch. This technique does not prevent switch control plane protocols such as CDP, DTP, VTP, and PAgP from using the default VLAN.
If there are access switch ports assigned to the default VLAN, this is a finding.
M
2917