Xepher 0 Posted December 5, 2015 Posted December 5, 2015 I have several computers that seem to be mis-reporting on the FIREWALL alerts as "Duplicate IP Address in Network" and "ARP Cache Poisoning Attack" . How can I eliminate the false alert, I know there is no other computer on network with that IP. TIA
Administrators Marcos 5,733 Posted December 6, 2015 Administrators Posted December 6, 2015 We've never had a false detection on these detections. It should be visible in Wireshark that adapters with a different MAC address are assigned the same IP address which triggers the detection.
Recommended Posts