Config Router

  • Google Sheets
  • CCNA Online training
    • CCNA
  • CISCO Lab Guides
    • CCNA Security Lab Manual With Solutions
    • CCNP Route Lab Manual with Solutions
    • CCNP Switch Lab Manual with Solutions
  • Juniper
  • Linux
  • DevOps Tutorials
  • Python Array
You are here: Home / Cisco / CCNP Switch FAQ: Preventing Spoofing Attacks

CCNP Switch FAQ: Preventing Spoofing Attacks

March 7, 2020 by Marques Brownlee

CCNP Switch FAQ: Preventing Spoofing Attacks

Q1. DHCP snooping helps mitigate which one of the following spoofed parameters?
a. Subnet mask
b. Gateway address
c. DNS address
d. DHCP request

Answer: B

Q2. With DHCP snooping, an untrusted port filters out which one of the following?
a. DHCP replies from legitimate DHCP servers
b. DHCP replies from rogue DHCP servers
c. DHCP requests from legitimate clients
d. DHCP requests from rogue clients

Answer: B

3. Which two of the following methods does a switch use to detect spoofed addresses when IP Source Guard is enabled?
a. ARP entries
b. DHCP database
c. DHCP snooping database
d. Static IP source binding entries
e. Reverse path-forwarding entries

Answer: C, D
Figure: Using a Spoofed Address Within a Subne

4. Which one of the following commands should you use to enable IP Source Guard on a switch interface?
a. ip source-guard
b. ip guard source
c. ip verify source
d. ip source spoof

Answer: C

5. Dynamic ARP Inspection helps mitigate an attack based on which one of the following parameters within an ARP reply packet?
a. Source IP address
b. MAC address
c. Destination IP address
d. Sequence number

Answer: B

6. Which one of the following should be configured as a trusted port for dynamic ARP inspection?
a. The port where the ARP server is located.
b. The port where an end-user host is located.
c. The port where another switch is located.
d. None; all ports are untrusted.

Answer: C

More Resources

  • CCNP Switch FAQ
  • CCNP Security VPN FAQ”
  • CCNP Secure IPS FAQ
  • CCNA Security FAQ
  • Network Security FAQ
  • CCNA Exam Answers Cisco Learning Network
  • CCNA Frequently Asked Questions
  • CCNA Exam Questions with Explanation
  • CCNA Cyber Ops FAQ

Related

Filed Under: Cisco Tagged With: CCNP, Preventing Spoofing Attacks, Switch FAQ

Recent Posts

  • How do I give user access to Jenkins?
  • What is docker volume command?
  • What is the date format in Unix?
  • What is the difference between ARG and ENV Docker?
  • What is rsync command Linux?
  • How to Add Music to Snapchat 2021 Android? | How to Search, Add, Share Songs on Snapchat Story?
  • How to Enable Snapchat Notifications for Android & iPhone? | Steps to Turn on Snapchat Bitmoji Notification
  • Easy Methods to Fix Snapchat Camera Not Working Black Screen Issue | Reasons & Troubleshooting Tips to Solve Snapchat Camera Problems
  • Detailed Procedure for How to Update Snapchat on iOS 14 for Free
  • What is Snapchat Spotlight Feature? How to Make a Spotlight on Snapchat?
  • Snapchat Hack Tutorial 2021: Can I hack a Snapchat Account without them knowing?

Copyright © 2025 · News Pro Theme on Genesis Framework · WordPress · Log in