Thanks, Chris.  So, if the question was to refer to trunk ports....and
insure that there is no DTP and VTP information exchanged....would it be
correct to both select vtp mode transparent and switchport nonnegotiate
(on both sides....since they will only respond, but not send vtp

Dave Schulz,

Well, it comes down to the wording somewhat I think. The following is
quoted from the latest 3550 documentation.

Version-Dependent Transparent Mode-In VTP version 1, a VTP transparent
switch inspects VTP messages for the domain name and version and
forwards a message only if the version and domain name match. Because
VTP version 2 supports only one domain, it forwards VTP messages in
transparent mode without inspecting the version and domain name."

So even in transparent mode, the switch will act as a relay for VTP
messages. It really comes down to if you want to stop the switch
processing any VTP messages, transparent will do the job, however if you
want to stop any VTP messages traversing the specified ports, access
mode would appear to ensure that.


You will also need to set the vtp mode to transparent (to not send out

Dave Schulz,
I am currently concentrating on Switch features .. specifically trunking
I came across a question where I am suppose to block vtp and dtp on
ports f0/5 to f/10.

Can someone vaildate my solution :

interface range f0/5 - 10
switchport mode access
switchport nonegotiate

This should block both dtp and vtp traffic on ports f0/5 - f/10.
Any help/guidance is greatly appreciated.

