New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 SSCP Exam - Topic 4 Question 14 Discussion

Actual exam question for ISC2's SSCP exam
Question #: 14
Topic #: 4
[All SSCP Questions]

What is the greatest danger from DHCP?

Show Suggested Answer Hide Answer
Suggested Answer: A

The greatest danger from BootP or DHCP (Dynamic Host Control Protocol) is from an intruder on the network impersonating a DHCP server and thereby misconfiguring the DHCP clients. Other choices are possible consequences of DHCP impersonation.

Source: STREBE, Matthew and PERKINS, Charles, Firewalls 24seven, Sybex 2000, Chapter 4: Sockets and Services from a Security Viewpoint.


Contribute your Thoughts:

0/2000 characters
Leontine
4 months ago
I think D is overblown, mail servers can be fixed easily.
upvoted 0 times
...
Johnetta
4 months ago
C is a huge issue too, wrong gateway can mess everything up.
upvoted 0 times
...
Lawrence
4 months ago
Wait, can multiple clients really have the same IP? Sounds risky!
upvoted 0 times
...
Giuseppe
4 months ago
I agree, A is the most dangerous.
upvoted 0 times
...
Yuonne
5 months ago
Definitely A, rogue DHCP servers are a big threat!
upvoted 0 times
...
Virgina
5 months ago
I thought the wrong default gateway was a concern, but now I’m leaning towards the impersonation risk being the greatest danger.
upvoted 0 times
...
Bernardine
5 months ago
I practiced a question similar to this, and I think option A makes the most sense since it can lead to a lot of misconfigurations.
upvoted 0 times
...
Gracie
5 months ago
I'm not entirely sure, but I feel like having duplicate IP addresses could cause major issues too.
upvoted 0 times
...
Millie
5 months ago
I remember studying DHCP vulnerabilities, and I think the biggest risk is definitely an unauthorized DHCP server messing things up.
upvoted 0 times
...
Vincenza
5 months ago
I'm a bit confused by the different authentication options presented here. I'll need to make sure I understand the differences between things like OAuth 2.0, named principal, and start authentication flow on save. I'll need to do some research to make sure I'm selecting the right approach.
upvoted 0 times
...
Elbert
5 months ago
I'm a bit confused on the difference between the options here. Is moving staff to other branches considered part of the damage control, or is it more of a recovery step? I'll have to think this through carefully.
upvoted 0 times
...
Wilford
5 months ago
Hmm, I'm a bit unsure about this one. I know Node.js is good for server-side JavaScript, but I'm not sure which specific benefits would be most convincing for the manager. I'll have to think this through carefully.
upvoted 0 times
...

Save Cancel