Infoblox’s global team of threat hunters uncovers a DNS operation with the ability to bypass traditional security measures and control the Great Firewall of China. Read about “Muddling Meerkat” and the many other threat actors discovered by Infoblox Threat Intel here.



How Infoblox Handles Repeated DHCP Discover

Posts: 8
3163     0

Is it Infoblox's default behaviour to stop responding to DHCP Discovery packet after completing multiple DORA processes from the same client?


I did a packet capture while repeatedly renewing the client's IP address and noticed that after a while, I am not getting anymore DHCP Offer packet.





Re: How Infoblox Handles Repeated DHCP Discover

[ Edited ]
Posts: 72
3163     0

My wild guess is that this pcap is from your client ( using relay ( and DHCP server ( 

To troubleshoot or understand DHCP server behavior, you always need atleast the below.

1. PCAP from the server
2. Client MAC address
3. Syslogs from the server covering the pcap duration [preferably with transaction logging - On certain new NIOS versions, this is enabled by default]



Best Regards,
Bibin Thomas

Showing results for 
Search instead for 
Did you mean: 

Recommended for You