CCNAbeginner-intermediate35 minfree

Switch Port Security on User Access Ports

Lock user-facing switchports down so random endpoint swaps are visible and controllable.

Lab challenge

Protect the edge without making normal workstation attachment impossible.

Progression

Prepare access ports, enable security, test normal behavior, then trigger and inspect a violation scenario.

Catalog metadata

Bundle
CCNA 200-301 v1.1 Foundation Lab Catalog
Blueprint domain
Security Fundamentals
Blueprint objective
Configure and verify port security
Focus
port security • switch hardening • access layer
Platform
Packet Tracer-friendly • CML-friendly • platform-neutral
Device count
3
Reference source
Cisco CCNA 200-301 v1.1 blueprint → Configure and verify port security

Prerequisites

  • access port configuration
  • basic MAC address awareness

Skills practiced

  • enable port security
  • set max MAC count
  • use sticky learning
  • verify violation actions

Validation checklist

  • sticky MACs appear or are configured
  • authorized host works
  • violation action triggers in the test case

Task sequence

  1. 1Convert the interface to a static access port if needed.
  2. 2Enable port security.
  3. 3Set the maximum MAC count and sticky learning or static MACs.
  4. 4Test with the intended host.
  5. 5Trigger a violation using a different endpoint and inspect the result.

Free catalog + advanced practice

This lab is part of the free foundation catalog. When you want deeper repetition, paid plans add structured practice variations and additional account features.

  • • Free catalog access remains available
  • • Every lab includes a downloadable learner pack
  • • Starter and Pro plans add extra generated practice
  • • Account tools help you monitor plan and subscription status

Download this lab

Grab the learner pack for this lab with the workbook, task sequence, validation checklist, reflection template, metadata, and reusable planning assets.