EC-CouncilEC-Council
312-50V13 · Question #112
312-50V13 Question #112: Real Exam Question with Answer & Explanation
The correct answer is A: Use port security on his switches.. To prevent ARP spoofing or poisoning, a network administrator can implement measures such as securing switch ports, monitoring ARP activity, and configuring static ARP entries.
Submitted by akirajp· Mar 6, 2026Sniffing
Question
A network admin contacts you. He is concerned that ARP spoofing or poisoning might occur on his network. What are some things he can do to prevent it? Select the best answers.
Options
- AUse port security on his switches.
- BUse a tool like ARPwatch to monitor for strange ARP activity.
- CUse a firewall between all LAN segments.
- DIf you have a small network, use static ARP entries.
- EUse only static IP addresses on all PC's.
Explanation
To prevent ARP spoofing or poisoning, a network administrator can implement measures such as securing switch ports, monitoring ARP activity, and configuring static ARP entries.
Common mistakes.
- C. While firewalls provide segmentation and control traffic at Layers 3 and 4, ARP spoofing is a Layer 2 attack that occurs within a local network segment, which a typical firewall does not directly prevent.
- E. Using only static IP addresses does not prevent ARP spoofing; devices still need to resolve IP addresses to MAC addresses via ARP, making them vulnerable to ARP cache poisoning.
Concept tested. ARP spoofing prevention methods
Topics
#ARP spoofing mitigation#port security#ARPwatch#static ARP
Community Discussion
No community discussion yet for this question.