IDS mailing list archives
Re: Difference between Protocol Analyzers -> Packet Sniffers
From: Vincent Bieri <vbieri () cisco com>
Date: Sat, 27 Mar 2004 17:10:15 +0100
Perhaps an analogy can help.... - packet sniffer: is like a camera (you get a picture of what you see)- protocol analyzer: is like a video monitoring/screening system (you get information about what you see such a metallic objects)
does this make sense? --vincent Eric Hines wrote:
All, Once upon a time I had a pretty heated argument between myself and another individual on the topic of distinction between protocol analyzers and packet sniffers, and that they are not one in the same. Can anyone provide me some good points on supporting this argument. E.g.Ethereal is a protocol analyzer and Tcpdump is not...I've only been able to articulate that Protocol Analyzers can conduct protocol decoding, whereas Tcpdump can not... Ethereal can provide information on the different fields of the HTTP header and SSL fields.... stuff like that.. Anyone care to jump in here and provide more meat to this argument than this? BRDS, Eric Hines, GCIA CEO, President Applied Watch Technologies, Inc. ------------------------------------------- Eric Hines, GCIA CEO, Chairman Applied Watch Technologies, Inc. web: http://www.appliedwatch.com email: eric.hines () appliedwatch com ------------------------------------------- Direct: (877) 262-7593 - Toll Free x327 Fax: (815) 425-2173 General: (877) 262-7593 (9am-5pm CST) ------------------------------------------- --------------------------------------------------------------------------- ---------------------------------------------------------------------------
--------------------------------------------------------------------------- ---------------------------------------------------------------------------
Current thread:
- Difference between Protocol Analyzers -> Packet Sniffers Eric Hines (Mar 27)
- Re: Difference between Protocol Analyzers -> Packet Sniffers Vincent Bieri (Mar 29)
- Re: Difference between Protocol Analyzers -> Packet Sniffers Joel Snyder (Mar 29)
- Re: Difference between Protocol Analyzers -> Packet Sniffers Adam Baldwin (Mar 29)
- Re: Difference between Protocol Analyzers -> Packet Sniffers Thomas Ptacek (Mar 29)
- Re: Difference between Protocol Analyzers -> Packet Sniffers Jim Matthews (Mar 30)
- <Possible follow-ups>
- RE: Difference between Protocol Analyzers -> Packet Sniffers Palmer, Paul (ISSAtlanta) (Mar 29)
- RE: Difference between Protocol Analyzers -> Packet Sniffers Seymour, Keith E. (Mar 29)
- RE: Difference between Protocol Analyzers -> Packet Sniffers Adam Powers (Mar 29)