6 - Misc LAN Topics Flashcards

1
Q

What is the RFC for RADIUS?

A

2865

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the IEEE protocol for LAN switch authentication to a RADIUS server?

A

802.1x

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What protocol and port does TACACS use?

A

TCP 49

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What protocol and port does RADIUS use?

A

UDP 1645 and 1812

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which protocol, TACACS or RADIUS, encrypts the entire packet?

A

TACACS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which protocol, TACACS or RADIUS, performs Authorization and Accounting in addition to Authentication?

A

TACACS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the 3 things that need to be configured to use AAA?

A
  • AAA servers
  • AAA group for the servers
  • AAA authentication method(s)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

In 802.1x what is the supplicant?

A

The end-user PC.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

In 802.1x what role does the switch play?

A

Authenticator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What does EAP stand for?

A

Extensible Authentication Protocol

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What does EAP do?

A
  • allows the supplicant to communicate with RADIUS AAA server.
  • EAP message from PC to switch in Ethernet frame using encapsulation EAP Over LAN (EAPoL),
  • then switch places EAP msg in UDP packet and forwards to the AAA server.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is EAPoL and what does it do?

A
  • EAP over LAN Encapsulation
  • It encapsulates EAP msgs in Ethernet frames between supplicant and switch until the switchport is authorized.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How does DHCP Snooping work?

A
  • Trusted Ports receive and allow legitimate DHCP traffic.
  • DHCP Offer and ACK messages on Untrusted ports are dropped
  • Switch also creates DHCP binding table for legitimate DHCP bindings. This prevents a different PC with a different MAC from spoofing a legitimate user.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is MEC

A

Multichassis Etherchannel - when an access switch has two connections to two distribution switches which are aggregated. These two connections act as a single Etherchannel even though it goes to two different switches. Loc: 5430

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the base AAA authentication config command?

A

aaa authentication login default (method1) (method2)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What does DORA stand for?

A
  • Discover (client to server)
  • Offer (server to client)
  • Request (client to server)
  • Acknowledge (server to client)
17
Q

What is Switch Aggregation?

A

VSS

18
Q

Which protocol, TACACS or RADIUS, encrypts the password?

A

They both do.

19
Q

Which protocol, TACACS or RADIUS, encrypts the entire packet?

A

TACACS

20
Q

What transport protocol does TACACS use?

A

TCP

21
Q

What transport protocol does RADIUS use?

A

UDP

22
Q

What kind of transmission is the first to be sent by a PC using DHCP?

A

PC sends a Broadcast

23
Q

What are the steps to follow when enabling DHCP Snooping?

A
  • enable DHCP Snooping on switch globally or by VLAN
  • Configure ports likely to receive legitimate DHCP Server traffic as Trusted
  • Leave remaining ports as Untrusted
24
Q

What 6 things are true of a switch stack?

A
  • single mgmt IP
  • Engineer telnets/SSH to a single switch
  • Single config file
  • STP, CDP, VTP runs on a single switch
  • Switchports all appear to belong to single switch
  • Single MAC table
25
Q

In a Switch Stack which switch does all the work?

A

The Master switch.

26
Q

What are 4 features of Chassis Aggregation?

A
  • Multichassis Etherchannel
  • Active/Standby Control Plane
  • Active/Active Data Plane
  • Single switch management