Which IPv6 First Hop Security mechanism prevents an attacker from successfully conducting a DoS attack on a router?

IT Exam Items Repository › Category: CCNP ENARSI v9 › Which IPv6 First Hop Security mechanism prevents an attacker from successfully conducting a DoS attack on a router?

Which IPv6 First Hop Security mechanism prevents an attacker from successfully conducting a DoS attack on a router?

  • IPv6 Source Guard
  • IPv6 RA Guard
  • IPv6 ND Inspection
  • IPv6 Destination Guard

Explanation: IPv6 Destination Guard is a mechanism specifically designed to minimize Denial-of-Service (DoS) attacks directed at a router. It prevents an attacker from exhausting a router's IPv6 neighbor cache by blocking Layer 2 address resolution for packets destined for bogus IPv6 addresses that do not exist in the binding table.

Related exam: Checkpoint Exam: MPLS and VPN Technologies