A network administrator has enabled Dynamic ARP Inspection (DAI) on a switch to mitigate ARP spoofing attacks. For DAI to function correctly and validate ARP packets on untrusted ports in a DHCP environment, which of the following components is essential?
The switch's Content-Addressable Memory (CAM) table
Dynamic ARP Inspection (DAI) relies on the DHCP snooping binding table to validate the binding between a host's MAC address and its assigned IP address. When an ARP packet arrives on an untrusted port, DAI intercepts it and checks against the MAC-to-IP mappings in the DHCP snooping table. If no valid binding exists, the ARP packet is dropped. The CAM table is used for Layer 2 forwarding decisions based on MAC addresses and ports. While static ARP ACLs can be used with DAI, they are typically for non-DHCP environments. The routing table is a Layer 3 construct used for forwarding IP packets between networks.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Dynamic ARP Inspection (DAI)?
Open an interactive chat with Bash
What is DHCP snooping and how does it relate to DAI?
Open an interactive chat with Bash
What are ARP spoofing attacks and their impact?
Open an interactive chat with Bash
Cisco CCNA 200-301
Security Fundamentals
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access