Full Disclosure mailing list archives
Re: Caching a sniffer
From: Kenton Smith <ksmith () chartwelltechnology com>
Date: Thu, 11 Mar 2004 09:49:42 -0700
I skimmed through some of the articles and they all have some good information. Are you running a switched network? If you are then the easiest way is to look at your traffic stats and find the port that *all* traffic is going to. If this doesn't make sense to you, then you should do some more research on sniffers. Kenton On Wed, 2004-03-10 at 14:13, Patricio Bruna V. wrote:
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 How can i know if there a sniffer running in my network? -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFAT4UNT29IM+6ptNcRAoKlAJ9Kbk2yH4MKrQRNaz6OVM2Jai8/+QCgoUnx IXCJDuMJxTU9r/E5AhjW1fc= =LiUx -----END PGP SIGNATURE----- _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Caching a sniffer Patricio Bruna V. (Mar 10)
- Re: Caching a sniffer Gary E. Miller (Mar 10)
- Re: Caching a sniffer Dave Horsfall (Mar 10)
- Re: Caching a sniffer morning_wood (Mar 11)
- Re: Caching a sniffer Tim (Mar 10)
- Re: Caching a sniffer Chris Adams (Mar 10)
- Re: Caching a sniffer Eric LeBlanc (Mar 11)
- Re: Caching a sniffer Simon Richter (Mar 11)
- Re: Caching a sniffer Kenton Smith (Mar 11)
- RE: Caching a sniffer Mike Fratto (Mar 11)
- RE: Caching a sniffer Kenton Smith (Mar 11)
- RE: Caching a sniffer David Bartholomew (Mar 11)
- Re: Caching a sniffer Simon Richter (Mar 12)
- RE: Caching a sniffer Justin Baldini (Mar 12)
- RE: Caching a sniffer Mike Fratto (Mar 11)
- <Possible follow-ups>
- Re: Caching a sniffer Ian Latter (Mar 10)
- Re: Caching a sniffer Cael Abal (Mar 10)
- RE: Caching a sniffer David Vincent (Mar 10)
- Re: Caching a sniffer Lan Guy (Mar 11)