SV-80575r1_rule
V-66085
SRG-NET-000512-L2S-000007
HFFS-L2-000024
CAT II
10
Assign all switch ports not in use to an inactive VLAN.
[HP-vlanX]port GigabitEthernet 1/0/1 to GigabitEthernet 1/0/48
Review the HP FlexFabric Switch configurations and examine all access switch ports.  Each access switch port not in use should have membership to an inactive VLAN that is not used for any purpose and is not allowed on any trunk links.
If there are any access switch ports not in use and not in an inactive VLAN, this is a finding.
<HP>display vlan X
 VLAN ID: X
 VLAN type: Static
 Route interface: Configured:
 Description: VLAN 000X
 Name: VLAN 000X
 Tagged ports:   None
 Untagged ports:
    GigabitEthernet1/0/1          GigabitEthernet1/0/2
    GigabitEthernet1/0/3          GigabitEthernet1/0/4
V-66085
False
HFFS-L2-000024
Review the HP FlexFabric Switch configurations and examine all access switch ports.  Each access switch port not in use should have membership to an inactive VLAN that is not used for any purpose and is not allowed on any trunk links.
If there are any access switch ports not in use and not in an inactive VLAN, this is a finding.
<HP>display vlan X
 VLAN ID: X
 VLAN type: Static
 Route interface: Configured:
 Description: VLAN 000X
 Name: VLAN 000X
 Tagged ports:   None
 Untagged ports:
    GigabitEthernet1/0/1          GigabitEthernet1/0/2
    GigabitEthernet1/0/3          GigabitEthernet1/0/4
M
2977