You are on page 1of 38

Network Device

Management and
Security
CHAPTER 16
MITIGATING THREATS AT THE ACCESS LAYER
functions included at the access layer:
In order to stop rogue DHCP servers in the network, switch interfaces are configured
With DHCP
EXTERNAL AUTHENTICATION
OPTIONS
RADIUS (REMOTE AUTHENTICATION DIAL-IN USER SERVICE)
CONFIGURING RADIUS
Cisco proprietary and uses TCP

TACACS+ ( Terminal Access Controller Access Control System )


CONFIGURING TACACS+
SNMP
Although Simple Network Management Protocol (SNMP) certai
SNMPv1 Supports plaintext authentication with community stri
MANAGEMENT INFORMATION BASE (MIB)
CONFIGURING SNMP
CLIENT REDUNDANCY ISSUES
FIRST HOP REDUNDANCY PROTOCOLS (FHRPS)
HOT STANDBY ROUTER PROTOCOL (HSRP)
VIRTUAL MAC ADDRESS
INTERFACE TRACKING
CONFIGURING AND VERIFYING HSRP
HSRP LOAD BALANCING
HSRP TROUBLESHOOTING

You might also like