07-12-2005 07:20 AM - edited 03-09-2019 11:48 AM
Could fragmented packets be used to defeat checks like DHCP Snooping? If a frame doesn't contain the full packet, how would the switch deal with it? A later fragmented frame might be the one that contains a phoney CHADDR (hardware address) field in the DHCP part of the packet even though the layer 2 MAC address might be correct.
07-18-2005 07:42 AM
This depends on type of switching prevailing.
08-05-2005 12:51 PM
What does the "type of switching" mean? Let's say it is a 3750 switch used to supply access ports to user PCs. DHCP Snooping is on as is IP Source Guard and Dynamic ARP Inspection. Can fragmented packets defeat some of these checks?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide