14 Dynamic ARP Inspection

This chapter covers

  • Address Resolution Protocol–based attacks such as ARP poisoning
  • How Dynamic ARP Inspection protects against ARP-based attacks
  • Configuring DAI on Cisco IOS switches

We first covered Address Resolution Protocol (ARP) in chapter 6 of volume 1, and it has come up several times throughout this book. ARP is an essential protocol in IP networks, serving as the bridge between Layer 2 and Layer 3 by mapping IP addresses to their corresponding MAC addresses. However, like many protocols, ARP is susceptible to exploitation that can compromise the security of a network. Dynamic ARP Inspection (DAI), the topic of this chapter, is a security feature on Cisco switches that we can use to mitigate such threats. ...

Get Acing the CCNA Exam, Volume 2 now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.