Switch Security Flashcards
What is Port Security?
Feature that is used to restrict input to an interface by limiting MAC addresses of workstations that are allowed to access a specific port. By default, port security is not defined on switches and requires configuration.
What is MAC Spoofing?
Is when attackers change their own physical PC address to conceal their
true identity and pose as someone else.
What is CAM Table Overflow?
Is an attack that targets a switch’s MAC table. When the list of addresses exceeds the
maximum size of the table, the switch will initiate its fallback mode and begin to act as
a hub, meaning every frame will be forwarded to every host on the network
What are the 3 Violation Modes?
Shutdown, Restrict and Protect
Which is the default Violation Mode?
Shutdown mode port must be reset manually
What is the major difference between Restrict and Protect modes?
Restrict will provide notifications and Protect will not
What are the 2 ways MAC address learning can be performed?
Manual and Sticky (learned dynamically)