Switch Security Configuration

Switch Security Configuration

University

15 Qs

quiz-placeholder

Similar activities

Switch Security Configuration

Switch Security Configuration

University

15 Qs

CCNA Network Attack Mitigations

CCNA Network Attack Mitigations

University

10 Qs

RandonQuestionRoutingChapter10

RandonQuestionRoutingChapter10

University

12 Qs

Cisco 2, Module 5

Cisco 2, Module 5

University

14 Qs

EtherChannel and HSRP

EtherChannel and HSRP

University

10 Qs

LAN biztonsági kvíz

LAN biztonsági kvíz

12th Grade - University

19 Qs

Finals Quiz 1 (Chap 7/8)

Finals Quiz 1 (Chap 7/8)

University

18 Qs

Escalamiento de Redes - Unidad 2

Escalamiento de Redes - Unidad 2

University

16 Qs

Switch Security Configuration

Switch Security Configuration

Assessment

Quiz

Computers

University

Hard

Created by

Jorge Valdez

Used 30+ times

FREE Resource

15 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

20 sec • 1 pt

What is a recommended best practice when dealing with the native VLAN?

Turn off DTP.

Use port security

Assign it to an unused VLAN.

Assign the same VLAN number as the management VLAN.

2.

MULTIPLE CHOICE QUESTION

20 sec • 1 pt

On what switch ports should PortFast be enabled to enhance STP stability?

all end-user ports

only ports that attach to a neighboring switch

all trunk ports that are not root ports

only ports that are elected as designated ports

3.

MULTIPLE CHOICE QUESTION

20 sec • 1 pt

Which command would be best to use on an unused switch port if a company adheres to the best practices as recommended by Cisco?

shutdown

ip dhcp snooping

switchport port-security mac-address sticky

switchport port-security violation shutdown

switchport port-security mac-address sticky mac-address

4.

MULTIPLE SELECT QUESTION

20 sec • 1 pt

Which two features on a Cisco Catalyst switch can be used to mitigate DHCP starvation and DHCP spoofing attacks? (Choose two.)

port security

extended ACL

DHCP snooping

DHCP server failover

strong password on DHCP servers

5.

MULTIPLE CHOICE QUESTION

20 sec • 1 pt

What is the best way to prevent a VLAN hopping attack?

Disable STP on all nontrunk ports.

Use ISL encapsulation on all trunk links.

Use VLAN 1 as the native VLAN on trunk ports.

Disable trunk negotiation for trunk ports and statically set nontrunk ports as access ports.

6.

MULTIPLE CHOICE QUESTION

20 sec • 1 pt

Which procedure is recommended to mitigate the chances of ARP spoofing?

Enable port security globally.

Enable DHCP snooping on selected VLANs.

Enable DAI on the management VLAN.

Enable IP Source Guard on trusted ports.

7.

MULTIPLE SELECT QUESTION

20 sec • 1 pt

What are two types of switch ports that are used on Cisco switches as part of the defense against DHCP spoofing attacks? (Choose two.)

unknown port

untrusted port

unauthorized port

trusted DHCP port

authorized DHCP port

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?