SCOR: DHCP Snooping, DAI, IP Source Guard, Private VLANs, & Storm Control


Overview/Description
Expected Duration
Lesson Objectives
Course Number
Expertise Level



Overview/Description

When you think about attacking a network with a rogue DHCP device, you realize it is such a relatively easy attack to carry out. In this course, you'll learn about the DHCP snooping feature and how it is configured. Next, you'll examine how multiple different security features can leverage the DHCP snooping database that results from a proper implementation of DHCP snooping, including a demonstration of both the DAI and IP Source Guard features. You'll learn about the often intimidating security feature private VLANs, including the details of these structures and the reason why they exist. Finally, you'll explore traffic storms, including when they occur, how they create excessive traffic and can degrade network performance, and how to use the traffic storm control feature. This course can be used in preparation for the 350-701: Implementing and Operating Cisco Security Core Technologies (SCOR) certification exam.



Expected Duration (hours)
1.2

Lesson Objectives

SCOR: DHCP Snooping, DAI, IP Source Guard, Private VLANs, & Storm Control

  • identify DHCP snooping configuration commands
  • identify the type of port associated with DHCP servers
  • recognize the purpose of DHCP snooping
  • identify layer 2 security features on a switch
  • recognize how to enable DIA on a switch
  • configure an isolated private VLAN
  • identify the different port types with private VLANs
  • recognize the different types of private VLANs
  • recognize the use of private VLANs
  • identify common switch features
  • recognize how to configure storm control
  • Course Number:
    it_ciscortv_07_enus

    Expertise Level
    Expert