Sections:
Use Case Scenarios:
Overview:
Lab Topology
Scenario:
Native VLAN Configuration
HQ-Access-SW1
HQ-Distro-SW1
HQ-Distro-SW2
HQ-Core-SW1
Native VLAN Mismatch on HQ-Core-SW1
To summarize the scenario, the native VLAN of 60 has been configured on both ends of the trunk links between switches.
Note: If CDP is enabled on the Cisco switches, CDP will detect and notify you of a Native VLAN mismatch to correct
VLAN Hopping Attacks
Scenario:
Double Tagging
How it Works:
Double Tagging Mitigations:
Switch Spoofing
How it Works:
Switch Spoofing Mitigations:
Other VLAN Hopping Mitigations:
There are various other best practices to avoid VLAN Hopping attacks and will be discussed more in depth in future lessons.