Valid JN0-347 Dumps shared by ExamDiscuss.com for Helping Passing JN0-347 Exam! ExamDiscuss.com now offer the newest JN0-347 exam dumps, the ExamDiscuss.com JN0-347 exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com JN0-347 dumps with Test Engine here:
Which two port security features are dependent on the DHCP snooping database? (Choose two.)
Correct Answer: B,C
Explanation/Reference: Explanation: B: Dynamic ARP inspection (DAI) prevents Address Resolution Protocol (ARP) spoofing attacks. ARP requests and replies are compared against entries in the DHCP snooping database, and filtering decisions are made on the basis of the results of those comparisons. C: IP source guard mitigates the effects of IP address spoofing attacks on the Ethernet LAN. With IP source guard enabled, the source IP address in the packet sent from an untrusted access interface is validated against the SourceDSN MAC address in the DHCP snooping database. The packet is forwarded if the source IP-MAC binding is valid; if the binding is not valid, the packet is discarded. You enable IP source guard on a VLAN. EX Series switches support IPv6 source guard also. Reference: http://www.juniper.net/techpubs/en_US/junos13.2/topics/concept/port-security-overview.html