DHCP Safety Technology testing
1. Test Content: Testing the security capability of DHCP
2. test equipment:cisco3750,cisco3550,PC(win7),SERVER(win2008 )
3. Logical topology:
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/6C/26/wKioL1VA9w2TncM1AAXO_0ktRPk817.jpg "style=" float: right; "title=" Test topology Map "alt=" wkiol1va9w2tncm1aaxo_0ktrpk817.jpg "/>
4. Test Instructions:
1) use 3750 analog router to turn on all three layer functions
2) control the DHCP two-layer source interface using ipdhcp snooping technology .
3) use IP helper-address to specify the cross-network segment server and ensure three layer security.
4) on a cross-network segment, you need to knock ip DHCP reply information trust-all on the 3750(router) . The IP DHCP reply information trust-all command is required if you are using a router as a DHCP server . In this experiment,3750(Router) uses helper-address to forward DHCP packets from
At the client side,the 3750(router) acts as the server 's role.
5. Note:
1) DHCP snooping technology early IOS is not supported.
2) DHCP snooping technology is usually usedincombination with DAI and IPSG .
This article is from the "Network Diagram" blog, be sure to keep this source http://1234012345.blog.51cto.com/943137/1640506
DHCP Security technology test