Search Header Logo

CCNA - SRWE - 11.6.4

Authored by Edwin Salazar

Instructional Technology

University

Used 4+ times

CCNA - SRWE - 11.6.4
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

15 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is a recommended best practice when dealing with the native VLAN?

Use port security

Turn off DTP

Assign the same VLAN number as the management VLAN

Assign it to an unused VLAN

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

On what switch ports should PortFast be enabled to enhance STP stability?

only ports that attach to a neighboring switch.

all trunk ports that are not root ports.

only ports that are elected as designated ports.

all end-user ports

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which command would be best to use on an unused switch port if a company adheres to the best practices as recommended by Cisco?

switchport port-security mac-address sticky mac-address

switchport port-security mac-address sticky

switchport port-security violation shutdown

ip dhcp snooping

shutdown

4.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

Which two features on a Cisco Catalyst switch can be used to mitigate DHCP starvation and DHCP spoofing attacks? (Choose two.)

DHCP snooping

DHCP server failover

port security

extended ACL

strong password on DHCP servers

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is the best way to prevent a VLAN hopping attack?

Use VLAN 1 as the native VLAN on trunk ports.

Disable STP on all nontrunk ports.

Use ISL encapsulation on all trunk links.

Disable trunk negotiation for trunk ports and statically set nontrunk ports as access ports.

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which procedure is recommended to mitigate the chances of ARP spoofing?

Enable port security globally.

Enagle DAI on the management VLAN.

Enable DHCP snooping on selected VLANs

Enable IP Source Guard on trusted ports.

7.

MULTIPLE SELECT QUESTION

45 sec • 1 pt

What are two types of switch ports that are used on Cisco switches as part of the defense against DHCP spoofing attacks? (Choose two.)

unknown port

unauthorized port

untrusted port

authorized DHCP port

trusted DHCP port

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?