Security Basics mailing list archives

RE: Looking for a good protocol analyzer or network sniffer


From: Byron Copeland <nodialtone () comcast net>
Date: 03 Apr 2004 00:17:15 -0500

Hmm. I use ethereal and I thinks its pretty good. But, IRIS from
eeye.com is an outstanding (plug) network sniffer and packet reassembler
tool. Will even create some nice executive level reports if need be. 
I've used it when situations called for it.

Worth looking at definitely.

My 2 cents

-b

On Fri, 2004-04-02 at 14:47, Yoo, Gene wrote:
How about Ethereal -> www.ethereal.com

-----Original Message-----
From: Giddens, Robert [mailto:GiddensRobert () bfusa com] 
Sent: Friday, April 02, 2004 7:46 AM
To: security-basics () securityfocus com
Subject: Looking for a good protocol analyzer or network sniffer

I am currently in the market for a good network analysis tool or
protocol analyzer for the network that I manage.  I currently use
Ethereal but want something more GUI based with better capabilities.
 
I have a Cisco switched network.  One 4500 Core Switch with Fiber Gig to
all the area switches.  In the 4500 I have Sup IV cards and plan to use
layer 3 (via EIGRP) directly on the switch.  Most device connections are
Copper running 100 Meg.  I have seen some very crazy pricing on the Gig
stuff so I think my budget will keep me in the 100 Meg area.  I do have
access to a corporate office that could provide the Gig support.
 
I have looked at EtherPeek NX (WildPackets) and the Network Instruments
stuff.  I currently use the ProConvert from WildPackets to convert the
traces I get from one product to another.
 
Thanks for your input!!!!
 
Robert Giddens



Attachment: signature.asc
Description: This is a digitally signed message part


Current thread: