Network Foundation Protection Flashcards
Name three core elements addressed by NFP (Network Foundation Protection).
Management Plane, Control Plane, Data Plane
If you add authentication to your routing protocol so that only trusted authorized routers share information, which plane in the NFP are you securing?
Control Plane
If you use authentication and authorization services to control which administrators can access which networked devices and control what they are allowed to do, which primary plane of NFP are you protecting?
Management plane
Name two protocols used to protect the management plane?
HTTPS, SSH
Name two ways to implement role-based access control related to the management plane.
Views, AAA services
What do CoPP and CPPr have in common?
They both focus on control plane protection, They both can identify traffic destined for the router that will likely require direct CPU resources to be used by the router
Which type of attacks can you mitigate by authenticating a routing protocol?
Man-in-the-Middle attack, Denial-of-service attack, Reconnaissance attack
What is a significant difference between CoPP and CPPr?
CPPr can classify and act on more-specific traffic than CoPP
Name four ways to enable you to protect the data plane.
IOS zone-based firewall, IPS, Access lists, Port security
DHCP snooping protects which component of NFP?
Data Plane