Juniper
JN0-643 · Question #115
A company's security policy does not allow outside computers or smart phones into their work areas. All company-provided computers are strictly controlled using 802.1X authentication on all of their…
The correct answer is B. The DHCP snooping feature was not enabled on any of the switches. See the full explanation below for the reasoning.
Question
A company's security policy does not allow outside computers or smart phones into their work areas. All company-provided computers are strictly controlled using 802.1X authentication on all of their switches. All computers obtain DHCP IP addresses from centralized servers and all switches have IP spoofing enabled. However, one of the computers was able to send IP spoofed packets. Why did the IP spoof feature fail to prevent the spoofed packets from being forwarded?
Options
- AThe IP source guard database timeout was set too low.
- BThe DHCP snooping feature was not enabled on any of the switches.
- CIP source guard does not prevent IP spoof attacks; you need to configure the Dynamic ARP
- D802.1X feature was not enabled on the port that was directly connected to the infected computer.
How the community answered
(55 responses)- A7% (4)
- B71% (39)
- C18% (10)
- D4% (2)
Community Discussion
No community discussion yet for this question.