What is the most likely cause of this?

An administrator is capturing traffic with Wireshark and is only seeing ARP traffic. What is the most
likely cause of this?

An administrator is capturing traffic with Wireshark and is only seeing ARP traffic. What is the most
likely cause of this?

A.
The network interface on which the scan is running is not in promiscuous mode.

B.
The machine is on a switched network and is therefore only seeing local and
broadcast/multicast packets.

C.
The administrator did not enable the TCP and UDP options when starting the scan.

D.
The network interface on which the scan is running has the ARP_ONLY flag set.



Leave a Reply 0

Your email address will not be published. Required fields are marked *