• Post author:
  • Post category:Blog
  • Reading time:1 mins read
  • Post last modified:June 12, 2024

What protocol should be disabled to help mitigate VLAN attacks?

  • STP
  • CDP
  • DTP
  • ARP
Explanation & Hint:

To help mitigate VLAN attacks, you should disable DTP (Dynamic Trunking Protocol). DTP can be used by an attacker to negotiate a trunk link with a switch, which can allow them to access all VLANs across that trunk. Disabling DTP on switch ports that do not need to form trunks is a best practice for VLAN security.

While STP (Spanning Tree Protocol) and CDP (Cisco Discovery Protocol) have their own associated security risks, they are not specifically used to mitigate VLAN attacks. ARP (Address Resolution Protocol) is unrelated to VLAN security specifically and is necessary for IPv4 communication within a network.

For more Questions and Answers:

CCNA 2 v7 – SRWE v7.02 Final Exam Answers Full 100%

Subscribe
Notify of
guest
0 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments