Lab 10.1.8 Poison ARP and Analyze with Wireshark [WLOs: 1, 2, 3, 4, 5] [CLOs: 1, 2, 3]
In this lab, your task is to discover if ARP poisoning is happening as follows:
- Use Wireshark to capture packets on the enp2s0 interface for five seconds.
- Analyze the Wireshark packets to determine whether ARP poisoning is taking place.
- Use the 192.168.0.2 IP address to help make your determination.
- Answer the questions.
Complete this lab as follows:
- From the Favorites bar, open Wireshark.
- Maximize the window for easier viewing.
- Under Capture, select enp2s0.
- Select the blue fin to begin a Wireshark capture.
- After capturing packets for 5 seconds, select the red box to stop the Wireshark capture.
- In the Apply a display filter field, type arp and press Enter to only show ARP packets.
- In the Info column, look for the lines containing the 192.168.0.2 IP address.
- In the top right, select Answer Questions.
- Answer the questions.
- Select Score Lab.
Correct answer: 00:00:1B:11:22:33
Correct answer: 00:00:1B:33:22:11
Comments
Post a Comment