
494949
© 2002, Cisco Systems, Inc. All rights reserved.
l2-security-bh.ppt
More ARP Spoof Mitigation
¥ Some IDS systems will watch for an unusually
high amount of ARP traffic
¥ ARPWatch is a freely available tool that will track
IP/MAC address pairings
¥ Consider static ARP for critical routers and hosts
(beware the administrative pain)
¥ An ARP ÒFirewallÓ feature is in development at
Cisco for initial deployment on our higher-end
switches
Comentarios a estos manuales