DHCP Exhaustion

DHCP exhaustion is a Layer 2 attack that also implements a DoS. An attacker sends a flood of DHCP request packets to the DHCP server, each requesting an IP address for a random MAC address. Eventually, the DHCP server runs out of available IP addresses and stops issuing DHCP bindings. This failure means that other hosts on the network cannot obtain a DHCP lease, which causes a DoS.

Solution: Cisco switches implement a feature called DHCP snooping, which places a rate limit on DHCP requests.

Continue reading here: H323 Call Flow

Was this article helpful?

+4 0

Readers' Questions

  • fatima
    Which of the following best describes dhcp scope exhaustion?
    2 months ago
  • DHCP scope exhaustion refers to a situation where the available IP addresses in a DHCP (Dynamic Host Configuration Protocol) scope have been fully allocated or used up. This means that there are no more available IP addresses for assignment to new devices connecting to the network. As a result, new devices will not be able to obtain a valid IP address automatically from the DHCP server and may experience connectivity issues or be unable to join the network.