VLANs Flashcards
Port Security
Prevents unauthorized access to a switchport by identifying and limiting the MAC addresses of the hosts that are allowed
Dynamic Learning (Port Security)
Defines a maximum number of MAC addresses for a port and blocks new devices that are no on the learned list.
Private VLAN (Port Isolation)
A technique where a VLAN contains switchports that are restricted to using a single uplink (divides VLAN into multiple sub/private VLANS)
Primary VLAN
Forward frames downstream to all of the secondary VLANs
Isolated VLAN
Cann reach
*Primary VLAN
*Not other secondary VLANs
Community VLAN
Can communicate with
*Each other
*Primary VLAN
*Not other secondary VLANs
Promiscuous Port (P-Port)
Can communicate with anything connected to the primary or secondary VLANs
Native VLAN
VLAN where untagged traffic is put once it is received on a trunk port
DHCP Snooping
Provides security by
*Inspecting DHCP traffic
*Filtering untrusted DHCP messages, *Building and maintaining a DHCP snooping binding table
Untrusted Interface
Any interface that is configured to receive messages from outside the network or firewall
Virtual Local Area Network (VLAN)
Allows different logical networks to share the same physical hardware and provides added security and efficiency
VLAN Trunking
Multiple VLANs transmitted over the same physical cable
VLAN Assignment/Tagging
Practice of segmenting an IT organization’s network, separating users into respective network sections