14.9.11 Packet Tracer - Layer 2 Vlan Security Access
Disable DTP and set trunking manually.
On the access ports connecting to end devices (Fa0/1, Fa0/2, etc.), you need to lock down the MAC addresses. 14.9.11 packet tracer - layer 2 vlan security
ip dhcp snooping ip dhcp snooping vlan 10,20 interface g0/1 ip dhcp snooping trust interface range fa0/1-24 ip dhcp snooping limit rate 10 no ip dhcp snooping trust Now, only the uplink port can send DHCP Offer/ACK messages. Any rogue server on an access port will be ignored. Disable DTP and set trunking manually

