CAS-002 · Question #37
CAS-002 Question #37: Real Exam Question with Answer & Explanation
The correct answer is B: Threat: Bridge loop. The scenario describes dual fiber links (redundant physical paths) connected to Layer 2 switches across multiple IDFs. On a Layer 2 network without loop prevention, redundant links create the conditions for a bridge loop (switching loop). Unlike higher-layer protocols, Ethernet h
Question
Options
- AThreat: 802.1q trunking attack
- BThreat: Bridge loop
- CThreat: VLAN hopping
- DThreat: VLAN hopping
Explanation
The scenario describes dual fiber links (redundant physical paths) connected to Layer 2 switches across multiple IDFs. On a Layer 2 network without loop prevention, redundant links create the conditions for a bridge loop (switching loop). Unlike higher-layer protocols, Ethernet has no TTL mechanism, so broadcast frames loop indefinitely, causing a broadcast storm that consumes all available bandwidth and brings down the entire network - the greatest possible impact. The remediation is to enable Spanning Tree Protocol (STP) or its faster variant RSTP, which logically blocks redundant paths while keeping them available for failover. VLAN hopping and 802.1q attacks are serious but do not carry the same potential for total network collapse.
Community Discussion
No community discussion yet for this question.