Enabling STP BPDU Guard
STP BPDU Guard can be enabled on an
individual port or on a set of ports.
Note: STP BPDU Guard is disabled by
default.
- Enter the global configuration mode.
- Enable STP BPDU guard on a specific port or on a set of ports.
- Re-enable an error-disabled port
using one of the following methods:
device(config)# interface ethernet 1/1/2 device(config-if-e1000-1/1/2)# disable device(config-if-e1000-1/1/2)# enable
To re-enable an error-disabled port manually, first use thedisablecommand and then theenablecommand from the interface configuration mode. - Check port status using the
show interfacecommand.device# show interface ethernet 1/1/2 Gigabit Ethernet1/1/2 is ERR-DISABLED (bpduguard), line protocol is down
The following example shows how to enable STP BPDU guard on a specific port.
device# configure terminal device(config)# interface ethernet 1/1/1 device(config-if-e1000-1/1/1)# stp-bpdu-guard
The following example shows how to enable STP BPDU guard on a set of ports.
device# configure terminal device(config)# interface ethernet 1/1/1 to 1/1/9 device(config-mif-1/1/1-1/1/9)# stp-bpdu-guard