Edge ports are directly connected to user terminals and, in most cases, will not receive BPDUs. However, attackers may send pseudo BPDUs to attack the switch with edge ports. In this case, if the edge ports receive the BPDUs, they are then configured as non-edge ports and spanning tree recalculation is triggered. Network flapping then occurs. Such attacks can be mitigated using BPDU protection on switches with edge ports.
The system view is displayed.
The MSTP process view is displayed.
Skip this step if you perform configurations in the MSTP process 0.
BPDU protection is enabled on the switch.
By default, BPDU protection is not enabled on the switch.