exam questions

Exam JN0-348 All Questions

View all questions & answers for the JN0-348 exam

Exam JN0-348 topic 1 question 3 discussion

Actual exam question from Juniper's JN0-348
Question #: 3
Topic #: 1
[All JN0-348 Questions]

You have a conference room with an open network port that is used by employees to connect to the network. You are concerned about rogue switches being connected to this port.
Which two features should you enable on your switch to limit access to this port? (Choose two.)

  • A. DHCP snooping
  • B. dynamic ARP inspection
  • C. MAC limiting
  • D. 802.1X
Show Suggested Answer Hide Answer
Suggested Answer: CD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
boyseven777
Highly Voted 4 years, 10 months ago
Should be 802.1X and mac limiting, the question asks about tackling rogue ***switches***, DHCP snooping and DAI are tracking IP-MAC association and this is to target rogue layer hosts, not switches
upvoted 12 times
...
svregaz
Most Recent 2 years, 9 months ago
Selected Answer: CD
Seems like C and D are a better fit here
upvoted 4 times
...
wauzer
2 years, 11 months ago
Selected Answer: CD
This is about rogue Switches, not about Hosts, nor DHCP Server
upvoted 2 times
...
Dev_K
3 years, 7 months ago
I think Answer should be B and C because if DAI enabled then it automatically enables DHCP Snooping so no need to enable it explicitly. MAC Limiting should be there prevent mac flooding.
upvoted 1 times
...
TQU29
3 years, 10 months ago
"...to limit access to this port" ! MAC limiting will limit the access to this port, 802.1X will limit the access to this port. DHCP Snooping and DAI will protect from rogue DHCP server and IP spoofing. Now way that A and B could be true with this question.
upvoted 2 times
...
mickytm
3 years, 11 months ago
MAC limiting will prevent users to be able to connect to the network after the number of macs allowed is reached. 802.1x not sure if will prevent a rough L2 switch to allow multiple devices to be connected to the same port. So I'm guessing A and B are correct.
upvoted 1 times
...
TECH3K3
4 years ago
I'm a cisco engineer and have configured switches for a while and limiting a port to 2 MAC addresses is the most used solution. Also to have total control of what is being connected to the network, you would want to configure 802.1X. What has DHCP Snooping or arp inspection got to do with preventing rogue switches from being connected to the network? NOTHING, IMO. If you think otherwise, please put an explanation why to back up your reason.
upvoted 4 times
...
TECH3K3
4 years, 1 month ago
Answer must be C and D, A and B are Host related no rouge switches connecting to the network
upvoted 2 times
...
shabbir1282
4 years, 10 months ago
I think C & D, he is concerned on rouge switches, mac-limit and 802.1x
upvoted 4 times
...
Mookie1966
4 years, 10 months ago
Correct A and B is the correct
upvoted 1 times
...
Quynhtx
4 years, 10 months ago
Arp inspection. But arp inspection need use db of dhcp snooping. So A, B is right
upvoted 2 times
...
Vaishakh
4 years, 11 months ago
it should 802.1X and DHCP snooping
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago