5

MITM . , . , (Man-in-the-middle) , . () . .

, . , .

, MITM-, :

 MITM

, PC1 - , , R1. , , , , MAC- , , IP- . IP- , , , . , PC1 , MAC- , BBBB.BBBB.BBBB, R1. R1 - () PC1, MAC- AAAA.AAAA.AAAA. , .

(Address Resolution Protocol - ARP), , , PC1 R1, , :

 MITM

ARP 2 ( ) 3 ( ) TCP/IP. IP- MAC- , 3, IP- . MAC- MAC- , 2. ARP .

, PC1, MAC- , R1, ARP- , , MAC- , :

  ARP

ARP . , IP- , ARP-, MAC-, :

 ARP  R1

MAC- ARP , PC1. MAC- 2 . , PC1, MAC- , 2, .

PC1 , R1, R1 , PC1. PC1 R1 . MAC-. , ARP, IP- MAC-. PC1 R1. ARP , ARP.

, ARP . ARP ARP , IP- MAC- ARP. , ARP TCP/IP.

, ARP PC1 R1:

      ARP

, PC1 R1 , MITM.

, arpspoof, ARP - MITM:

 arpspoof

, (10.10.10.11) (10.10.10.1) IP- MAC-. Wireshark, ARP, :

 Wireshark   ARP

, Wireshark . 2, Cisco IOS, . :

  • Port security: Port security MAC- .
  • Dynamic ARP Inspection (DAI): DAI IP-to-MAC, , . , , 2.
  • IP Source Guard: , Cisco IP- , IP-.

50% Merion Academy