ARP Cache Poisoning attack - ESET Firewall

Hello everyone.

I have a client that keeps sending notifications at ESET firewall console with the indication "ARP Cache Poisoning attack".

The source IP address and the destination IP address appears to be the same.

Any idea how can I deal with this?
Is there a chance that is a false alarm?


  • Administrators

Do the MAC addresses belong to network adapters on a single machine or server, or to NIC on different machines?

