
Microsoft

Microsoft DHCP
Microsoft DHCP (Dynamic Host Configuration Protocol) Server is a Windows Server role that automatically assigns IP addresses and network configuration parameters to devices on a network. It maintains a centralized record of IP address assignments, mapping physical devices to their network addresses over time.
DHCP server logs are crucial for security investigations as they provide the historical mapping between IP addresses and physical devices (via MAC addresses). This correlation enables security teams to identify which device was using a specific IP address at the time of a security event, supporting incident investigation, forensic analysis, and compliance requirements for network access tracking.
Sophos Products
Sophos MDR/XDR Integrations
Partner Technology
Network & Infrastructure Security
Solution Category
Sophos MDR/XDR Integrations