LAN Switch Security

What Hackers Know About Your Switches

Nonfiction, Computers, Networking & Communications
Cover of the book LAN Switch Security by Eric Vyncke, Christopher Paggen, Pearson Education
View on Amazon View on AbeBooks View on Kobo View on B.Depository View on eBay View on Walmart
Author: Eric Vyncke, Christopher Paggen ISBN: 9780134433608
Publisher: Pearson Education Publication: September 6, 2007
Imprint: Cisco Press Language: English
Author: Eric Vyncke, Christopher Paggen
ISBN: 9780134433608
Publisher: Pearson Education
Publication: September 6, 2007
Imprint: Cisco Press
Language: English

Contrary to popular belief, Ethernet switches are not inherently secure. Security vulnerabilities in Ethernet switches are multiple: from the switch implementation, to control plane protocols (Spanning Tree Protocol [STP], Cisco® Discovery Protocol [CDP], and so on) and data plane protocols, such as Address Routing Protocol (ARP) or Dynamic Host Configuration Protocol (DHCP). LAN Switch Security explains all the vulnerabilities in a network infrastructure related to Ethernet switches. Further, this book shows you how to configure a switch to prevent or to mitigate attacks based on those vulnerabilities. This book also includes a section on how to use an Ethernet switch to increase the security of a network and prevent future attacks.

 

Divided into four parts, LAN Switch Security provides you with steps you can take to ensure the integrity of both voice and data traffic traveling over Layer 2 devices. Part I covers vulnerabilities in Layer 2 protocols and how to configure switches to prevent attacks against those vulnerabilities. Part II addresses denial-of-service (DoS) attacks on an Ethernet switch and shows how those attacks can be mitigated. Part III shows how a switch can actually augment the security of a network through the utilization of wirespeed access control list (ACL) processing and IEEE 802.1x for user authentication and authorization. Part IV examines future developments from the LinkSec working group at the IEEE. For all parts, most of the content is vendor independent and is useful for all network architects deploying Ethernet switches.

 

After reading this book, you will have an in-depth understanding of LAN security and be prepared to plug the security holes that exist in a great number of campus networks.

  • Use port security to protect against CAM attacks
  • Prevent spanning-tree attacks
  • Isolate VLANs with proper configuration techniques
  • Protect against rogue DHCP servers
  • Block ARP snooping
  • Prevent IPv6 neighbor discovery and router solicitation exploitation
  • Identify Power over Ethernet vulnerabilities
  • Mitigate risks from HSRP and VRPP
  • Stop information leaks with CDP, PaGP, VTP, CGMP and other Cisco ancillary protocols
  • Understand and prevent DoS attacks against switches
  • Enforce simple wirespeed security policies with ACLs
  • Implement user authentication on a port base with IEEE 802.1x
  • Use new IEEE protocols to encrypt all Ethernet frames at wirespeed.

This security book is part of the Cisco Press® Networking Technology Series. Security titles from Cisco Press help networking professionals secure critical data and resources, prevent and mitigate network attacks, and build end-to-end self-defending networks.

View on Amazon View on AbeBooks View on Kobo View on B.Depository View on eBay View on Walmart

Contrary to popular belief, Ethernet switches are not inherently secure. Security vulnerabilities in Ethernet switches are multiple: from the switch implementation, to control plane protocols (Spanning Tree Protocol [STP], Cisco® Discovery Protocol [CDP], and so on) and data plane protocols, such as Address Routing Protocol (ARP) or Dynamic Host Configuration Protocol (DHCP). LAN Switch Security explains all the vulnerabilities in a network infrastructure related to Ethernet switches. Further, this book shows you how to configure a switch to prevent or to mitigate attacks based on those vulnerabilities. This book also includes a section on how to use an Ethernet switch to increase the security of a network and prevent future attacks.

 

Divided into four parts, LAN Switch Security provides you with steps you can take to ensure the integrity of both voice and data traffic traveling over Layer 2 devices. Part I covers vulnerabilities in Layer 2 protocols and how to configure switches to prevent attacks against those vulnerabilities. Part II addresses denial-of-service (DoS) attacks on an Ethernet switch and shows how those attacks can be mitigated. Part III shows how a switch can actually augment the security of a network through the utilization of wirespeed access control list (ACL) processing and IEEE 802.1x for user authentication and authorization. Part IV examines future developments from the LinkSec working group at the IEEE. For all parts, most of the content is vendor independent and is useful for all network architects deploying Ethernet switches.

 

After reading this book, you will have an in-depth understanding of LAN security and be prepared to plug the security holes that exist in a great number of campus networks.

This security book is part of the Cisco Press® Networking Technology Series. Security titles from Cisco Press help networking professionals secure critical data and resources, prevent and mitigate network attacks, and build end-to-end self-defending networks.

More books from Pearson Education

Cover of the book Critical Thinking: Tools for Taking Charge of Your Professional and Personal Life by Eric Vyncke, Christopher Paggen
Cover of the book Applying Domain-Driven Design and Patterns by Eric Vyncke, Christopher Paggen
Cover of the book Game Programming Algorithms and Techniques by Eric Vyncke, Christopher Paggen
Cover of the book Business Express: Manage yourself and your workload by Eric Vyncke, Christopher Paggen
Cover of the book Zero to 100,000 by Eric Vyncke, Christopher Paggen
Cover of the book Nikon D3200 by Eric Vyncke, Christopher Paggen
Cover of the book The Non-Designer's Design Book by Eric Vyncke, Christopher Paggen
Cover of the book iOS Auto Layout Demystified by Eric Vyncke, Christopher Paggen
Cover of the book Design and Implementation of Intelligent Manufacturing Systems by Eric Vyncke, Christopher Paggen
Cover of the book Road to Seeing by Eric Vyncke, Christopher Paggen
Cover of the book Creating a Presentation in Microsoft Office PowerPoint 2007 for Windows by Eric Vyncke, Christopher Paggen
Cover of the book Strategies for Winning the Dividend Game: Maximizing Returns from the Stock Market by Eric Vyncke, Christopher Paggen
Cover of the book The Complete Guide to B2B Marketing by Eric Vyncke, Christopher Paggen
Cover of the book My eBay for Seniors by Eric Vyncke, Christopher Paggen
Cover of the book Adobe Dreamweaver CS5 on Demand by Eric Vyncke, Christopher Paggen
We use our own "cookies" and third party cookies to improve services and to see statistical information. By using this website, you agree to our Privacy Policy