Snort mailing list archives

Re: Can snort create actual traffic? (imp)


From: "security people" <securitypeople () hotmail com>
Date: Fri, 23 May 2003 08:08:32 -0400

You need a protocol simulator or some testing tools. Spirent (www.spirent.com) is the leader in making traffic 
generators. Look for smart bit products.


  ----- Original Message ----- 
  From: Vaidehi Kasarekar 
  To: snort-users () lists sourceforge net 
  Sent: Thursday, May 22, 2003 8:55 PM
  Subject: [Snort-users] Can snort create actual traffic? (imp)


  Hello, 

  From how much i have understood in snort is:

  There are three modes of operations
      Sniffer Mode: which basically will sniff packets like tcpdump..
      Packet Logger Mode: which will log packets the packets dumped in the specified file or device.
      IDS Mode: It enables network intrusion detection (NIDS) mode.

  OK..so far so good....

  But I want to generate traffic. Can i use snort for that?
  Suppose  i have records like
   SRC                         DEST
   196.37.75.158:1024 - 10.10.1.12:79
   197.182.91.233:1049 - 10.10.1.12:79
   197.182.91.233:1111 - 10.10.1.12:25
   135.8.60.182:1113 - 10.10.1.12:25
   10.10.1.12:1029 - 197.182.91.233:25
   10.10.1.12:1051 - 195.73.151.50:25
   10.10.1.12:1052 - 196.37.75.158:25
   10.10.1.12:1104 - 196.227.33.189:25
  and i want to generate traffic from each source with that port no to its corresponding destination. Can i do that 
with snort????

  I appreciate your help
  Thanks
  -Vaidehi


------------------------------------------------------------------------------
  Do you Yahoo!?
  The New Yahoo! Search - Faster. Easier. Bingo.

Current thread: