Chapter 4

1: List six network services that you might want to disable on your Cisco IOS Firewall router.
A1: Answer: For security reasons, you might want to disable some or all of the following services: BOOTP service, CDP, classless routing behavior, configuration auto-loading, DNS, finger, HTTP service, IP directed broadcasts, IP mask reply, IP redirects, IP source routing, IP unreachable notifications, NTP service, proxy ARP, SNMP, TCP small servers, and UDP small servers.
2: What command would you use to disable BOOTP service on your Cisco IOS Firewall, and where would the command be applied?
A2: Answer: You can disable BOOTP service on your Cisco IOS Firewall by using the no ip bootp server global command.
3: You can disable CDP either globally ...

Get CCSP Self-Study: Securing Cisco IOS Networks (SECUR) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.