Chapter 6 Infrastructure Security Definitions Flashcards

1
Q

VLAN

A

One way to identify a local area network is to say that all the devices in the same LAN have a common Layer 3 IP network address and that they also are all located in the same Layer 2 broadcast domain. A virtual LAN (VLAN) is another name for a Layer 2 broadcast domain. VLANs are controlled by the switch. The switch also controls which ports are associated with which VLANs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

802.1Q

A

802.1Q is an IEEE standard protocol used for VLAN tagging of Ethernet frames. 802.1Q defines the procedures to be used by switches, wireless access points, and other network devices when handling such frames. The most critical piece of information in an 802.1Q VLAN tag is the VLAN ID.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Root Port

A

The switch port that is closest to the root bridge in terms of STP path cost (that is, it receives the best BPDU on a switch) is considered the root port. All switches, other than the root bridge, contain one root port.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Designated

A

The switch port that can send the best BPDU for a particular VLAN on a switch is considered the designated port.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Nondesignated

A

These are switch ports that do not forward packets, so as to prevent the existence of loops within the networks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

BPDU Guard

A

If BPDUs show up where they should not, the switch protects itself.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Root Guard

A

Controls which ports are not allowed to become root ports to remote root switches.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Port security

A

Limits the number of MAC addresses to be learned on an access switch port.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

DHCP snooping

A

Prevents rogue DHCP servers from impacting the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Dynamic ARP inspection

A

Prevents spoofing of Layer 2 information by hosts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

IP Source Guard

A

Prevents spoofing of Layer 3 information by hosts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

802.1X

A

With 802.1X, you can authenticate users before allowing their data frames into the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Storm Control

A

Limits the amount of broadcast or multicast traffic flowing through the switch.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Access control lists

A

Used for traffic control and to enforce policy.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

CDP

A

CDP Cisco Systems introduced the Cisco Discovery Protocol (CDP) in 1994 to provide a mechanism for the management system to automatically learn about devices connected to the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

LLDP

A

LLDP 802.1AB (Station and Media Access Control Connectivity Discovery, or Link Layer Discovery Protocol [LLDP]). LLDP, which defines basic discovery capabilities, was enhanced to specifically address the voice application; this extension to LLDP is called LLDP-MED or LLDP for Media Endpoint Devices.

16
Q

Management plane:

A

This includes the protocols and traffic that an administrator uses between his workstation and the router or switch itself. An example is using a remote management protocol such as Secure Shell (SSH) to monitor or configure the router or switch.

17
Q

Control plane

A

Control plane: This includes protocols and traffic that the network devices use on their own without direct interaction from an administrator. An example is a routing protocol.

18
Q

Data plane

A

Data plane: This includes traffic that is being forwarded through the network (sometimes called transit traffic).