Poison ARP and Analyze with Wireshark with TestOut

 Explanation

In this lab, your task is to discover if ARP poisoning is happening as follows:

  • Use Wireshark to capture packets on the enp2s0 interface for five seconds.
  • Analyze the Wireshark packets to determine whether ARP poisoning is taking place.
  • Use the 192.168.0.2 IP address to help make your determination.
  • Answer the questions.

Complete this lab as follows:

  1. From the Favorites bar, open Wireshark.
  2. Maximize the window for easier viewing.
  3. Under Capture, select enp2s0.
  4. Select the blue fin to begin a Wireshark capture.
  5. After capturing packets for 5 seconds, select the red box to stop the Wireshark capture.
  6. In the Apply a display filter field, type arp and press Enter to only show ARP packets.
  7. In the Info column, look for the lines containing the 192.168.0.2 IP address.
  8. In the top right, select Answer Questions.
  9. Answer the questions.
  10. Select Score Lab.

Comments

Popular Posts