A. If a port is connected to a foreign device make sure to disable CDP, DTP, RPR, PAgP, UDLP, and any other unnecessary protocols, and enable UplinkFast/BPDU guard on it.
B. Enable root guard feature to prevent a directly or indirectly connected STP-capable device from affecting the location of the root bridge.
C. Configure VTP domains appropriately or turn off VTP altogether to limit or prevent possible undesirable protocol interaction with regards to the network-wide VLAN configuration.
D. Set the native VLAN ID to match the port VLAN ID of any 802.1q trunk to prevent spoofing.
E. Disable all unused ports and place them in an unused VLAN to avoid unauthorized access.
您可能感興趣的試卷
你可能感興趣的試題
A. Smaller companies are at less risk than larger enterprises, so their security needs are not as great.
B. Business strategy should directly relate to the security policy and budget.
C. The designated security expert should report to the IT department, since that is where thesolution will be implemented.
D. Security should be a continuous process.
E. Security solutions should come from multiple vendors to make it easier to coordinate security events from the point of origin.
A. Cisco lOS Matrix Navigator
B. Cisco Feature Navigator
C. Cisco lOS Package Planner
D. Cisco lOS Security Planner
E. Cisco Dynamic Configuration Tool
A. available only in autonomous APs
B. available in autonomous and lightweight APs
C. a feature of WDS in autonomous APs
D. a feature of WDS in lightweight APs
E. requires at least one AP and one Wireless LAN Services Module
A. An 802.11 g access point with a variety of antennas can be used in all standard site surveys.
B. Site surveys can be performed manually or through assisted site survey.
C. Channel power during testing starts at the default minimum and gradually increases to the maximum.
D. Overlapping access points can create performance problems.
E. Surveys should be done after hours in an office building or during reduced inventory levels in warehouses.
A. It provides configuration, monitoring, and troubleshooting capabilities across a wide range of security products.
B. It integrates security device management products and collects events on an "as needed" basis to reduce management overhead.
C. It integrates security management capabilities into the router or switch.
D. It provides a single point of contact for all security configuration tasks thereby enhancing the return on investment.
E. It leverages existing network management systems such as HP OpenView to lower the cost of implementation.
最新試題
Which item is a feature of Cisco Compatible Extensions, Version 3? ()
Which two of these statements describe important aspects of performing a wireless site survey? (Choose two.) ()
Deploying ISRs with integrated security services can help lower the total cost of ownership. Which of these Cisco ISR Routers features illustrate this point?()
Which Cisco security tool can best determine it a Cisco ISR router is properly secured? ()
At which stage of the Cisco Lifecycle Services approach would you test for system acceptance?()
Cisco ASDM provides 16 different graphs the help identify security risks by displaying data aboutpotentially malicious activity. What is one kind of data these graphs show? ()
In CiscoWorks LAN Management Solution, what are some of the examples of a managed device (sometimes called network elements)? (Choose three.) ()
List three benefits of implementing an integrated security solution based on the Cisco Self- Defending Network strategy? (Choose three.)()
After properly configuring multiple VLANs, an administrator has decided to secure its VLAN network. Which three steps are required to secure this environment? (Choose three.)()
Which component of Cisco ASDM provides administrators with a complete system overview and device health statistics at a glance?()