Problem Statement
Which control helps reduce risk from ARP spoofing in local networks?
Explanation
ARP spoofing lets an attacker redirect traffic on a LAN. Switch features like DHCP snooping build a binding table, and Dynamic ARP Inspection checks ARP replies against that table. Together they stop forged ARP messages on untrusted access ports.
Code Solution
SolutionRead Only
Switch idea: ip dhcp snooping; ip arp inspection vlan 10; trust uplink ports; untrust access ports
