Honeypots mailing list archives

Forgate 0.9 Released!


From: Darren Bounds <dbounds () intrusense com>
Date: Fri, 23 Jan 2004 15:33:05 -0500

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello all,

I thought I'd let you know that I just posted the initial release of a little tool I've spent the last week working on. It's called Forgate and it's available at: http://forgate.sourceforge.net.

Forgate (Forge Gate) allows you to capture traffic from a 3rd party in a switched environment at the expense of a slight increase in latency to that 3rd party host. Using ARP cache poisoning, packet capture and packet reconstruction, Forgate works with nearly all TCP, ICMP and UDP IPv4 traffic flows. Essentially it redirects the traffic flow, analyses and displays the packet information, then reconstructs it and sends it back on it's way.

Forgate was written as a proof of concept so don't blame me if you break something. :)

It requires libnet 1.1 or greater as well as libpcap and has been successfully compiled and tested to run on FreeBSD, and Linux.


Regards,

Darren Bounds, CISSP
Intrusense LLC.
http://www.intrusense.com

- --
Intrusense - Securing Business As Usual

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (Darwin)

iD8DBQFAEYUEsvxTSz2eaa8RAgg5AKCVddbs7Y8NRFRJRo28295Q76zxhwCePZKg
R8gdg2tSuqP0YvFJCojl4x0=
=4DX8
-----END PGP SIGNATURE-----


Current thread: