Writers' Community!
Home Page Two Columnists Submit an Article FAQs Contact Author Login
Article Submission
We Need YOUR Articles!
We'll Promote Them for FREE!

Author Login

New Authors
Register Here


Now Serving 6,131 Authors
64,248 Quality Articles
& 4,480 Current Users Online!
Featured Authors
Avis Ward (11,752)
Jane Bullard (2,076)
Michael Ramzy (517)
Judge Dred (313)
Michelle Mackin (3,534)
Mark Parsec (33,345)
Mogama (14,610)
Steve Kovacs (570)
Mike Fak (5,988)
Robert Melaccio, Sr. (5,516)
Gary W. Halsey Sr. (7,303)
Terry Mitchell (4,232)
David Pekrul (4,313)
Missing Link (707)

View All Featured Authors
Most Recent
Microsoft Excel It's More Than Just Spreadsheets

Cisco CCNA and CCNP Practice Exam Questions: Etherchannels, Network Security, and More!

Free CCNA Wirless Tutorial

Why should you get Microsoft and Cisco Certification?

Windows Vista Sidebar, Gadgets, Easy Wireless Networking and Improved Back Features

CompTIA A+, Security+, Network+ Tutorial Ethernet Card Troubleshooting

CCNA, CCENT, CCNP Tutorial on Routers and Routing

CompTIA Security+ Article on Firewall Security Advantages and Firewall Functions

Microsoft Training Certifications

CCNA Security Exam Tutorial: When It's Good To Add Salt

Home » Categories » Computers & Networking » Technical Certification » CCNP Certification BCMSN Exam Tutorial: MAC Address Flooding » Printer Friendly

CCNP Certification BCMSN Exam Tutorial: MAC Address Flooding

Rated 4 out of 5
No Reader Ratings Available ?
Rate It  /  View Comments  /  View All Articles submitted by Chris Bryant CCIE 12933
Submitted Saturday, May 12, 2007
Chris Bryant CCIE 12933 (14,065)
The Bryant Advantage
Log in to become a member of Chris Bryant CCIE 12933's Fan Club!


Network attacks take many forms, and it's important to know how the potential security issues with ARP, DHCP, and MAC addresses. They're innocent looking enough, but each of these common network protocols and addresses can be turned against us. Today, we'll talk about what MAC Address Flooding is, how it can be used against our network, and the best defense against this attack.

A MAC Address Flooding attack is an attempt by a network intruder to overwhelm the switch memory reserved for maintenance of the MAC address table. The intruder generates a large number of frames with different source MAC addresses - all of them invalid. As the switch's MAC address table capabilities are exhausted, valid entries cannot be made - and this results in those valid frames being broadcast instead of unicast.

This has two side effects, both unpleasant:

As mentioned, the MAC address table fills to capacity, preventing legitimate entries from being made.

The large number of unnecessary frame flooding quickly consumes bandwidth as well as overall switch resources.

The best defense against MAC Address Flooding is a good offense, and in this case, that offense consists of port-based authentication and port security. By making sure our host devices are indeed who we think they are and authenticating them before they join our network, we reduce the potential for an intruder to unleash a MAC Address Flooding attack on our network. The key isn't to fight the intruder once they're in our network - the key is to keep them out in the first place!

Chris Bryant, CCIE #12933, is the owner of The Bryant Advantage, home of free CCNP exam and CCNA Certification tutorials, The Ultimate CCNA Study Package, and Ultimate CCNP Study Packages.

You can also visit his blog, which is updated several times daily with new Cisco certification articles, free tutorials, and daily CCNA / CCNP exam questions! Details are on the website.

For a FREE copy of his latest e-books, “How To Pass The CCNA" and “How To Pass The CCNP", just visit the website! You can also get FREE CCNA and CCNP exam questions every day!

Get your Microsoft Vista certification with The Bryant Advantage!






Reprint Rights

Log in to become a member of Chris Bryant CCIE 12933's Fan Club!

No comments yet.


Was this article helpful to you? Leave a Public Comment or Question:

This Article has been viewed 480 times.
Article added to SearchWarp.com on 5/12/2007 11:27:46 AM.
View other articles written by Chris Bryant CCIE 12933 (14,065)


If you found this article interesting, you may want to check out:

Disclaimer:  All information on this site is provided for informational purposes only! By no means is any information presented herein intended to substitute for the advice provided to you by any health care or other professional or organization.


Today's Most Popular
Cisco CCNA Exam Tutorial: What's A Collision Domain?

Cisco CCNA Certification Exam Tutorial: Route Summarization

Cisco CCENT / CCNA Certification Exam Tutorial: Logging Synchronous And Exec-Timeout Commands

Cisco CCNP Certification / BSCI Exam: What's A "Floating Static Route"?

Cisco Certification: The Definitive Guide To ARP, RARP, IARP, and Proxy ARP

Cisco CCNP / BSCI Exam Tutorial: EIGRP Route Summarization

Cisco CCNA Certification: Static And Default Static Routes

Five Commands For Your Cisco CCNA/CCNP Home Practice Lab

CCNA / CCNP / BCMSN Exam Tutorial: VLAN Trunking Basics

Cisco Certification: Troubleshooting and Debugging ISDN

Viewed from Cache. Load Time: 0.031.

Home  |  Page Two  |  FAQ's  |  Contact  |  Terms of Service  |  Article Submission Guidelines  |  Writers' Contests  |  Privacy  |  Mission / About
Copyright © 1999-2009 SearchWarp.com, All Rights Reserved - SearchWarp.com is an IcoLogic, Inc. Company