Dear René,

Is it to avoid a security issue that we disable DTP ? If someone bring a rogue switch and plug it et voilà we negociate a trunk ?




Hi Prince,

That’s correct, this could be dangerous if your interface is configured for “dynamic auto” or “dynamic desirable”.

If you configured the interface in static “access” or “trunk” then negotiatin can’t change it anymore but you are still sending DTP packets which is a bit pointless, better to just disable them.


Hi Rene,

Can you explain me what does it mean Trunking negotiation is ON does it means that this particular mode is set to send DTP frames . to the my knowledge only Dynamic desirable and ON mode will send out DTP frames and other modes are doesn’t (Dynamic Auto and Access)

Hello Ankit

When we say that DTP negotiation is ON, it means that the port is in a state where, if the proper DTP packets are sent/received, the port may change its trunking functionality. Negotiation is ON in the following states: Dynamic Desirable, Dynamic Auto or Trunk.

DTP negotiation is OFF when a port is in one of the following states: Access or Non-negotiate.

As for the exchanging of DTP frames, these are sent when a port is in the following states: Dynamic Desirable and Trunk.

DTP frames are NOT sent when a port is configured as Dynamic Auto, Non-negotiate or Access.

So, even if a port is in Dynamic Auto and doesn’t send DTP frames, it is still considered Negotiation ON because it can be affected by the DTP frames it receives.

I hope this has been helpful!