<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Episode 702 – DHCP Exhaustion and DNS Man-in-the-Middle</title>
	<atom:link href="http://Hak5.org/episodes/episode-702/feed" rel="self" type="application/rss+xml" />
	<link>http://Hak5.org/episodes/episode-702</link>
	<description>Trust Your Technolust</description>
	<lastBuildDate>Wed, 08 Feb 2012 06:47:16 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<item>
		<title>By: John</title>
		<link>http://Hak5.org/episodes/episode-702#comment-42298</link>
		<dc:creator>John</dc:creator>
		<pubDate>Wed, 03 Mar 2010 06:05:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.hak5.org/?p=1719#comment-42298</guid>
		<description>Heaven forbid some people have differences in opinions</description>
		<content:encoded><![CDATA[<p>Heaven forbid some people have differences in opinions</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DroppinBy</title>
		<link>http://Hak5.org/episodes/episode-702#comment-42295</link>
		<dc:creator>DroppinBy</dc:creator>
		<pubDate>Tue, 02 Mar 2010 23:52:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.hak5.org/?p=1719#comment-42295</guid>
		<description>Whats with all the voting people down? Not cool :/</description>
		<content:encoded><![CDATA[<p>Whats with all the voting people down? Not cool :/</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sniper</title>
		<link>http://Hak5.org/episodes/episode-702#comment-42279</link>
		<dc:creator>Sniper</dc:creator>
		<pubDate>Fri, 26 Feb 2010 11:46:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.hak5.org/?p=1719#comment-42279</guid>
		<description>btw, check out the latest NASA &quot;live&quot; server vulnerabilities at pinoysecurity.blogspot.com   just don&#039;t deface them ok?</description>
		<content:encoded><![CDATA[<p>btw, check out the latest NASA &#8220;live&#8221; server vulnerabilities at pinoysecurity.blogspot.com   just don&#8217;t deface them ok?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Slasher</title>
		<link>http://Hak5.org/episodes/episode-702#comment-42277</link>
		<dc:creator>Slasher</dc:creator>
		<pubDate>Fri, 26 Feb 2010 06:43:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.hak5.org/?p=1719#comment-42277</guid>
		<description>Or as soupman said, take all the ip&#039;s for yourself. Also on my router (Netgear) you can restrict the range of ip&#039;s it will hand out, so if i only have say 2 pc&#039;s i need wireless with, i can change it from 192.168.0.1-192.168.0.254 to 192.168.0.1-192.168.0.3.</description>
		<content:encoded><![CDATA[<p>Or as soupman said, take all the ip&#8217;s for yourself. Also on my router (Netgear) you can restrict the range of ip&#8217;s it will hand out, so if i only have say 2 pc&#8217;s i need wireless with, i can change it from 192.168.0.1-192.168.0.254 to 192.168.0.1-192.168.0.3.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben</title>
		<link>http://Hak5.org/episodes/episode-702#comment-42275</link>
		<dc:creator>Ben</dc:creator>
		<pubDate>Thu, 25 Feb 2010 15:35:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.hak5.org/?p=1719#comment-42275</guid>
		<description>What, no mention of how to help prevent against this type of attack??

1. Shorten your DHCP lease times. DHCP clients issue a DHCPREQUEST to renew their lease prior to the end of the lease. I believe most clients wait until the lease is 1/2 over to issue the first DHCPREQUEST.

2. Watch your network for rogue DHCP servers. If someone else is issuing DHCPOFFER packets you can monitor this using your IDS/IPS and take action.

3. Segment your network and only allow DHCPREQUEST traffic to be relayed to your DHCP server.</description>
		<content:encoded><![CDATA[<p>What, no mention of how to help prevent against this type of attack??</p>
<p>1. Shorten your DHCP lease times. DHCP clients issue a DHCPREQUEST to renew their lease prior to the end of the lease. I believe most clients wait until the lease is 1/2 over to issue the first DHCPREQUEST.</p>
<p>2. Watch your network for rogue DHCP servers. If someone else is issuing DHCPOFFER packets you can monitor this using your IDS/IPS and take action.</p>
<p>3. Segment your network and only allow DHCPREQUEST traffic to be relayed to your DHCP server.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: soupman</title>
		<link>http://Hak5.org/episodes/episode-702#comment-42263</link>
		<dc:creator>soupman</dc:creator>
		<pubDate>Wed, 24 Feb 2010 14:15:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.hak5.org/?p=1719#comment-42263</guid>
		<description>DHCP Exhaustion, loving it. I see it also being us full on your own network of you want to make 100% sure that no rogue device shows up, nab all the IPs for yourself so nobody is able to connect!(cant help but think I&#039;m stating the obvious here lol) Great episode as always, wish you could have come down south of UK Darren!
Peace :)</description>
		<content:encoded><![CDATA[<p>DHCP Exhaustion, loving it. I see it also being us full on your own network of you want to make 100% sure that no rogue device shows up, nab all the IPs for yourself so nobody is able to connect!(cant help but think I&#8217;m stating the obvious here lol) Great episode as always, wish you could have come down south of UK Darren!<br />
Peace <img src='http://Hak5.org/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>
<!-- This Quick Cache file was built for (  hak5.org/episodes/episode-702/feed ) in 0.68514 seconds, on Feb 9th, 2012 at 2:31 am UTC. -->
<!-- This Quick Cache file will automatically expire ( and be re-built automatically ) on Feb 9th, 2012 at 3:31 am UTC -->
