Company XYZ is designing the network for IPv6 security and they have these design requirements:
✑ A switch or router must deny access to traffic from sources with addresses that are correct, but are topologically incorrect
✑ Devices must block Neighbor Discovery Protocol resolution for destination addresses that are not found in the binding table.
Which two IPv4 security features are recommended for this company?
A . IPv6 DHCP Guard
B . IPv6 Source Guard
C . IPv6 Destination Guard
D . IPv6 Prefix Guard
E . IPv6 RA Guard
Answer: B,D
Explanation:
IPv6 Source Guard helps to prevent IP spoofing attacks by verifying the source IP address of a packet. If the source IP address does not have a valid binding in the binding table, the packet is dropped, thereby denying access to traffic from sources with addresses that are correct but topologically incorrect.
IPv6 Prefix Guard works similarly to Source Guard, but operates at the network prefix level. It verifies the source IP address of a packet against the prefix of a legitimate host in the binding table. If there’s no match, the packet is dropped. This also helps prevent spoofing attacks where a host might try to use a legitimate IP address, but with an incorrect network prefix.
Latest 400-007 Dumps Valid Version with 141 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund