Answer #15 — CompTIA Security+ Guidance

Answer #15

Question: Which can you put in a boot script to prevent MITM?

A: nmap -sS -sV -T5
B: arp -s 00:13:3b:12:6f:aa
C: tcpdump -i eth0 host or ether host 00:13:3b:12:6f:aa
D: netstat -an
E: ping

This is setting up static arp, which should cause the operating system to ignore the unsolicted ARP reply packets sent by the MitM.