
11
© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialPresentation_ID
21
IP Source Guard
IP: 10.1.1.1
10.1.1.2
Manually Changing IP Address or
Using Programs to Create IP
Spoofed Traffic
What It Does:
Automatically configures a Port ACL for IP address and adds MAC
address to port security list for the port. DHCP Snooping allows
learning and binding of IP address and MAC address by the switch
Removes ACL and MAC entry when lease expires
Benefit:
Prevents snooping of data or anonymous launching of attacks
I’m really
10.1.1.2
I’m
Sourcing
10.1.1.2
Not by My
Port ACL
© 2006 Cisco Systems, Inc. All rights reserved. Cisco ConfidentialPresentation_ID
22
Nemodulárne
switche
Kommentare zu diesen Handbüchern