🔥 3-day streak
Cisco CCNP Data Center DCCOR (350-601)44 / 136
Question 44 of 136

A network engineer is hardening access-layer Nexus switches in a data center. Users report intermittent connectivity, and investigation reveals a rogue device on an access port replying to DHCP requests with false gateway addresses, plus ARP spoofing attempts. The engineer enables DHCP snooping and Dynamic ARP Inspection (DAI) on the user VLAN. After enablement, legitimate clients on that VLAN can no longer obtain IP addresses, and the uplink toward the aggregation switch drops all DHCP replies. What is the MOST likely cause and correct remediation?

Reviewed for accuracy · Report an issueNext question