Arpwatch Explained

arpwatch
Author:Craig Leres
Developer:Lawrence Berkeley National Laboratory Network Research Group
Released:v1.0 Tue Jun 16 3:05:31 PDT 1992
Latest Release Version:3.3
Programming Language:C
Operating System:Cross-platform
Language:English
Genre:Computer security
License:3-clause BSD source with autoconf parts under GNU General Public License

arpwatch is a computer software tool for monitoring Address Resolution Protocol traffic on a computer network.[1] It generates a log of observed pairing of IP addresses with MAC addresses along with a timestamp when the pairing appeared on the network. It also has the option of sending an email to an administrator when a pairing changes or is added.

Network administrators monitor ARP activity to detect ARP spoofing, network flip-flops, changed and new stations and address reuse.

arpwatch was developed by Lawrence Berkeley National Laboratory, Network Research Group, as open-source software and is released under the BSD license.

See also

External links

Notes and References

  1. Web site: arpwatch(8) manual page . 2015-01-07.