Which IPsec encryption mode is appropriate when the destination of a packet differs from the security termination point?
A. transport
B. main
C. aggressive
D. tunnel
A network administrator is evaluating network security in the aftermath of an attempted ARP spoofing attack. If Port-channel1 is the uplink interface of the access-layer switch toward the distribution-layer switch, which two configurations must the administrator configure on the access-layer switch to provide adequate protection? (Choose two.)
A. ip dhcp snooping vlan 1-4094
!
interface Port-channel1
switchport protected
switchport port-security maximum 1
B. ip dhcp snooping vlan 1-4094
ip dhcp snooping
!
interface Port-channel1
ip dhcp snooping trust
C. ip dhcp snooping
!
interface Port-channel1
switchport port-security maximum 1
switchport port-security
D. ip arp inspection trust
!
interface Port-channel1
switchport port-security maximum 4094
switchport port-security
ip verify source mac-check
E. ip arp inspection vlan 1-4094
!
interface Port-channel1
ip arp inspection trust