Cisco Systems SF300-24P Uživatelský manuál Strana 370

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 483
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 369
Security
Dynamic ARP Inspection
353 Cisco Small Business 300 Series Managed Switch Administration Guide
17
- No Snoop VLAN—DHCP Snooping is not enabled on the VLAN.
- Trusted Port—Port has become trusted.
- Resource ProblemTCAM resources are exhausted.
To see a subset of these entries, enter the relevant search criteria and click Go.
Dynamic ARP Inspection
ARP enables IP communication within a Layer 2 Broadcast domain by mapping IP
addresses to a MAC addresses.
A malicious user can attack hosts, switches, and routers connected to a Layer 2
network by poisoning the ARP caches of systems connected to the subnet and by
intercepting traffic intended for other hosts on the subnet. This can happen
because ARP allows a gratuitous reply from a host even if an ARP request was not
received. After the attack, all traffic from the device under attack flows through the
attacker's computer and then to the router, switch, or host.
The following shows an example of ARP cache poisoning.
ARP Cache Poisoning
Zobrazit stránku 369
1 2 ... 365 366 367 368 369 370 371 372 373 374 375 ... 482 483

Komentáře k této Příručce

Žádné komentáře