Campus switches terminate city APs. Which port-hardening pair best protects those AP attachment points?
Select an answer to reveal the explanation.
Short Explanation
AP switchports deserve sticky MACs and BPDU guard so random bridges cannot play switch. Flooding every VLAN or silencing logs softens the port. Unlimited MAC moves invite swaps.
Full Explanation
Physical port security for AP attachments commonly combines MAC sticky (or similar MAC limiting) with BPDU guard so unauthorized bridges or sudden device swaps are constrained and STP attacks are blocked. Least-privilege VLAN trunks and logging support that hardening. Disabling visibility or permitting unlimited MAC/BPDU behavior undermines AP-port security on civic campuses.