Ch. 10 - Security in Network Design Flashcards
To permit I C M P traffic from any IP address or network to any I P address or network
access-list acl_2 permit icmp any
can be configured to evaluate all log data
Looking for significant events that require attention from the IT staff
SIEM (Security Information and Event Management)
Another Cisco command (also used on Arista devices) to secure switch access ports
Switchport port-security (or just port-security on Huawei switches)
On a Juniper switch:
The ____ command restricts the number of MAC addresses allowed in the MAC address table
mac-limit
helps ensure data confidentiality with both encryption and packet authentication by providing:
Message integrity
Encryption
CCMP—Short for Counter Mode with CBC (Cipher Block Chaining) MAC (Message Authentication Code) Protocol
Tunnel-based,
Creates an encrypted TLS tunnel between the supplicant and the server
PEAP (Protected EAP)
A RADIUS server is used in cooperation with an authentication mechanism called
EAP (Extensible Authentication Protocol)