Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Packet forensics using TCP
Don Parker, Mike Sues

Most of us who work in the security world have at one time or another looked at the raw output of a firewall, IDS, or other type of security device. What that output invariably leads one to is viewing packets directly for an investigation. Doing packet forensics can be a difficult and time consuming endeavour. Due to this fact, many of us prefer to use convenient tools such as Ethereal to help facilitate our analysis. There is a notable problem with this approach, however.

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 
Packet forensics using TCP 2007-03-01
Aju Thomas
Hi Don and Mike,

This was an amazing piece of information for anybody who wants to know what exatcly happening on with TCP packets.Really helpfull.

A must read topic for any CISSP learners..!

Thanks

Aju Thomas

Network Analyst

Siemens,India

...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus