Which DHCP message is used to detect unauthorized (rogue) DHCP servers?
Choose an answer
Tap an option to check your answer.
Correct answer: DHCPDISCOVER.
Why this is the answer
The DHCPDISCOVER message is used by a client to locate available DHCP servers. When a client boots up, it broadcasts a DHCPDISCOVER message. If an unauthorized (rogue) DHCP server is present on the network, it will respond to this DHCPDISCOVER message with a DHCPOFFER. Network administrators can monitor for unexpected DHCPOFFER messages originating from unknown MAC addresses or IP addresses to identify rogue DHCP servers. DHCPACK is sent by the server to confirm IP address assignment. DHCPREQUEST is sent by the client to request an offered IP address. DHCPOFFER is sent by a server in response to DHCPDISCOVER, proposing an IP address. While DHCPOFFER is part of the detection process, the initial message that triggers the rogue server's response is DHCPDISCOVER.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed