Many network administrators do not care about the vswitch settings. In fact, the operating system can be optimized, and the vswitch settings can also be optimized.
[Url] www.xyzyw.cn [/url] focuses on how to optimize vswitch settings.
Interface GigabitEthernet0/1
Switchport access vlan 2
Switchport mode access
// Switchport host (host mode) = switchport mode access + switchport portfast (TRUNK port not supported)
Switchport protected // Port Protection, which prevents mutual access between hosts
Storm-control broadcast level 0.01 // broadcast storm control
Spanning-tree portfast // port Quick Start; otherwise, it takes about 50 seconds to wait for the spanning tree to converge.
Spanning-tree bpduguard enable // when a loop exists, the port changes to the err-disable State and must be manually disabled before enabling
Ip dhcp snooping // enable DHCP detection globally
Interface GigabitEthernet0/24
Switchport trunk encapsulation dot1q
Switchport mode trunk
Ip access-group 110 in // application to entry direction
Ip dhcp snooping trust // trust, that is, only accept the DHCP service under the TRUNK Port
Access-list 110 deny tcp any eq 3389 // Disable Remote Desktop