Answer: See the explanation
IP Source Guard: Permits IP Traffic only when me IP address and Mac address matches the DHCP
snooping binding table
Unicast RPF : Discard packets that lack a verifiable IP source address
Dynamic ARP Inspection: Verify a valid IP-to_mac address binding of intercepted address resolution
protocol requests and responses.
Traffic Storm Control : Prevents Disruptions on layer 2 ports by excessive ingress traffic
CoPP : a QoS Policy map that protect the control plane
Link :http://www.cisco.com/web/strategy/docs/gov/turniton_cisf.pdf