nanog mailing list archives

Re: Good network sniffer?


From: "Alexei Roudnev" <alex () relcom net>
Date: Mon, 12 Jan 2004 21:17:31 -0800


{tcpdump || snort - as a agents} + ethereal.

Much better than $xx000 commercial sniffer(s) /I used both, and oput
commercial system into the wastebucket after comparation/.

Exception - if you need H.323, use commercial sniffers.

----- Original Message ----- 
From: "Yann Berthier" <yb () sainte-barbe org>
To: <nanog () merit edu>
Sent: Monday, January 12, 2004 3:51 PM
Subject: Re: Good network sniffer?



On Mon, 12 Jan 2004, Kevin C Miller wrote:


Tcprelay may get the replay portion of your question,
<http://tcpreplay.sourceforge.net/>

   You can add netdude <http://netdude.sourceforge.net/>, along with
   ethereal and tcpreplay, and you will have a powerful solution to
   sniff and decode packets, and to edit and replay them at will.

      - yann


Current thread: