A city asks whether ARP spoofing on a production VLAN is an acceptable default pivot method. What is the sound judgment?
Select an answer to reveal the explanation.
Short Explanation
ARP spoofing on a live VLAN is like yanking network cables to see who complains—it can work, and it can also spill coffee on production. Default to calmer forwards and tunnels. Save disruptive MITM for cases where the RoE explicitly green-lights the mess.
Full Explanation
Disruptive man-in-the-middle techniques such as ARP spoofing can affect availability and integrity on production networks. Least-impact port forwards and tunnels are preferred unless the RoE expressly authorizes higher-impact methods. A foothold does not imply blanket MITM permission. Risk-aware pivot selection protects the client while still enabling authorized reach.