Which mitigation technique would prevent rogue servers from providing false IP configuration parameters to clients?
- implementing port security
- turning on DHCP snooping
- disabling CDP on edge ports
- implementing port-security on edge ports
Explanation: Like Dynamic ARP Inspection (DAI), IP Source Guard (IPSG) needs to determine the validity of MAC-address-to-IP-address bindings. To do this IPSG uses the bindings database built by DHCP snooping.
Related exam: CCNA 2 v7 Course Final Exam Answers
Related exam: CCNA Security Chapter 6 Exam Answers
