Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Focus-Microsoft
[Top] [All Lists]

RE: DHCP database

Subject: RE: DHCP database
Date: Tue, 14 Jun 2005 09:12:21 -0400

You may need to use Jetpack.exe off the resource kit to compress the
file....

Actually jetpack.exe is installed with this operating system and is in
the %systemroot%\system32 folder.

Regards,
Ryan Matijcio

-----Original Message-----
From: Kern, Tom [mailto:tkern@CHARMER.COM] 
Sent: Monday, June 13, 2005 3:55 PM
To: Tom Burns; focus-ms@securityfocus.com
Subject: RE: DHCP database

just redirect the restore of the dhcp.mdb file to another
server(perferably stand alone and not on the network) and install dhcp
on it and click on "action" and "restore" in the dhcp admin mmc and
browse to where you put the dhcp.mdb file.
open it in dhcp admin and you'll see the leases for that date with the
pc name and mac.

You may need to use Jetpack.exe off the resource kit to compress the
file....




Tom Burns wrote:
Good morning,

I'm doing a security audit on a PC and need to cross reference what IP
address it had in December. Does anyone know how to look at the old
dhcp database (or any other files) to find out what IP address a
computer was assigned? I have backup tapes of the dhcp server.

The DHCP server is Windows 2000 with SP4.

Tom



------------------------------------------------------------------------
---

------------------------------------------------------------------------
---


------------------------------------------------------------------------
---
------------------------------------------------------------------------
---



---------------------------------------------------------------------------
---------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>