Switch Security
These attackes are usually an inside job , an originated from seemingly innocent sources like DHCP , ARP CDP, telnet, etc.
The attacker’s goal is to become the Man-In-The-Middle, with a naive user sending packets to the attacker as if it were a router. The attacker can glean information from the packets sent to it before it forwards them normally. In this post
This switch security section check on t these potential threats and at the different configurations that can be used to avoid them.We will do this in packet tracert so you can graphically understand what we are doing and with real equipment as well the ones not available through PT.
In this post I’ll describe different security features of Cisco Catalyst switch :
- DHCP Snooping
- Errdisable Concept
- Port Security
- Dot1x port-based authentication
- Storm Control
- Span (In the "Switch Features "section of this blog)
- IP Source Guard
- Private VLAN
- Dynamic ARP Inspection
These security features will prevent certain types of malicious attacks and will enhance your network security..
We invite everyone to try these labs in their home to improve your switch security skills..
Switch Security
Reviewed by ohhhvictor
on
1:56:00 PM
Rating:
No comments: