Chapter 18

Network Hardening Techniques

This chapter covers the following topics related to Objective 4.3 (Given a scenario, apply network hardening techniques) of the CompTIA Network+ N10-008 certification exam:

  • Best practices

    • Secure SNMP

    • Router Advertisement (RA) Guard

    • Port security

    • Dynamic ARP inspection

    • Control plane policing

    • Private VLANs

    • Disable unneeded switchports

    • Disable unneeded network services

    • Change default passwords

    • Password complexity/length

    • Enable DHCP snooping

    • Change default VLAN

    • Patch and firmware management

    • Access control list

    • Role-based access

    • Firewall rules

      • Explicit deny

      • Implicit deny

  • Wireless security

    • MAC filtering

    • Antenna placement

    • Power levels

    • Wireless client isolation

    • Guest network isolation

    • Preshared keys (PSKs) ...

Get CompTIA Network+ N10-008 Cert Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.