Notices
Computer & Technology Related Post here for help and discussion of computing and related technology. Internet, TVs, phones, consoles, computers, tablets and any other gadgets.

Network sniffer software (or even hardware!)

Thread Tools
 
Search this Thread
 
Old 27 February 2004, 09:23 PM
  #1  
boomer
Scooby Senior
Thread Starter
 
boomer's Avatar
 
Join Date: Feb 2000
Location: West Midlands
Posts: 5,763
Likes: 0
Received 0 Likes on 0 Posts
Question Network sniffer software (or even hardware!)

Does anyone know of a decent "network sniffer"?

Preferably a software application, although a hardware "all in one" device might be an option.

I am after something that can display packets broken down into their individual sections for training and explanation type purposes. e.g. Here is the "real live" sequence of events when your PC requests an IP address using DHCP. Oh, and it has to be "promiscuous", and not just traffic to the PC that it is running on

I have tried downloading a couple of trail packages, one of which just didn't work, and one (Ultra Network Sniffer) which seems quite good, but doesn't break the packets down into enough known bits.

ISTR that Microshaft SMS can offer similar functionality, but probably costs a bomb!

I don't mind paying for such a package, but i do want one that does a good job!

Cheers,

mb
Old 27 February 2004, 09:34 PM
  #2  
*Sonic*
Scooby Regular
 
*Sonic*'s Avatar
 
Join Date: May 2004
Location: R.I.P Piphead, at least you are home now :(
Posts: 10,026
Received 15 Likes on 10 Posts
Default

Network Associates Sniffer Pro, is pretty good
Old 27 February 2004, 10:12 PM
  #3  
Nicks VR4
Scooby Regular
 
Nicks VR4's Avatar
 
Join Date: May 2003
Posts: 1,165
Likes: 0
Received 0 Likes on 0 Posts
Default

Yeap as above NAI Sniffer
I did a 3 day course at NAI (I worked for them) for Sniffer Distributed I;m not IT either
And boy what a eye opener
Old 27 February 2004, 11:46 PM
  #4  
stiler83
Scooby Regular
 
stiler83's Avatar
 
Join Date: Dec 2002
Posts: 448
Likes: 0
Received 0 Likes on 0 Posts
Default

Sniffer Pro is the only one really worth using. I use this work and have tried most of the others and this would be my choice. But its not cheap mind.

Last edited by stiler83; 27 February 2004 at 11:46 PM.
Old 27 February 2004, 11:49 PM
  #5  
*Sonic*
Scooby Regular
 
*Sonic*'s Avatar
 
Join Date: May 2004
Location: R.I.P Piphead, at least you are home now :(
Posts: 10,026
Received 15 Likes on 10 Posts
Default

The only other one is Iris by eeye
Old 28 February 2004, 09:22 AM
  #6  
elgordano
Scooby Regular
 
elgordano's Avatar
 
Join Date: Jan 2002
Location: Herts
Posts: 1,125
Likes: 0
Received 0 Likes on 0 Posts
Default

Compuware Network Vantange and Application Vantage is the all singing all dancing package. It will cost you in excess of 40k though.
Old 28 February 2004, 09:27 AM
  #7  
Tebo
Scooby Regular
 
Tebo's Avatar
 
Join Date: Jan 2004
Location: http://www.scoobywales.co.uk
Posts: 174
Likes: 0
Received 0 Likes on 0 Posts
Default

I dont know what you are expecting to find, but if you are working at this level then I will assume you have access to Linux somewhere, there is a package that comes with most ditro's called 'ethereal' but they also do a copy for windows now I beleive.

try here
http://www.ethereal.com/

Tebo
http://www.tebo.dsl.pipex.com
Old 28 February 2004, 10:58 AM
  #8  
boomer
Scooby Senior
Thread Starter
 
boomer's Avatar
 
Join Date: Feb 2000
Location: West Midlands
Posts: 5,763
Likes: 0
Received 0 Likes on 0 Posts
Default

Well it looks like Sniffer Pro is the daddy, but as stiler83 says - "its not cheap mind"

Tebo,

yes we do have access to Linux, so i'll have a look at Ethereal as well!

Cheers,

mb
Old 29 February 2004, 12:07 PM
  #9  
R1916v
Scooby Regular
 
R1916v's Avatar
 
Join Date: May 2002
Posts: 1,002
Likes: 0
Received 0 Likes on 0 Posts
Default

Ethereal does have a windows version, it works well
Old 01 March 2004, 09:25 AM
  #10  
dsmith
Scooby Regular
 
dsmith's Avatar
 
Join Date: Mar 1999
Posts: 4,518
Likes: 0
Received 0 Likes on 0 Posts
Default

If you're going to be using it a lot then given a free hand I'd go for Sniffer Pro.

For normal use Ethereal is more than enough. Works well on Windows aswell. GUI can be a little unfriendly - some of the packet capture filters use unix tcpdump command line format etc. - but persevere and it worth the effort.

NTOP is also useful if you're more interested in top talkers or the like - also now has a windows version.

Deano
Old 01 March 2004, 02:51 PM
  #11  
boomer
Scooby Senior
Thread Starter
 
boomer's Avatar
 
Join Date: Feb 2000
Location: West Midlands
Posts: 5,763
Likes: 0
Received 0 Likes on 0 Posts
Thumbs up

Well i have just installed Ethereal (on Windows 2000) and i am very impressed.

I has a clean, easy to use interface, and most importantly i neatly breaks down packets into their component parts. For example, a DHCP Offer packet displays all the contained information, including Options and so on. We can even seen the setting up of PXE boots and the creation of multicast groups - fantastic!

Absolutely perfect to help explain to people how real life networks work

Thanks for the suggestions,

cheers,

mb

Last edited by boomer; 01 March 2004 at 02:54 PM.
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
hardcoreimpreza
Computer & Technology Related
21
11 October 2015 03:40 PM
greg320
Non Car Related Items For sale
6
11 October 2015 11:44 AM
Brzoza
Engine Management and ECU Remapping
1
02 October 2015 05:26 PM
Wurzel
Computer & Technology Related
10
28 September 2015 12:28 PM



Quick Reply: Network sniffer software (or even hardware!)



All times are GMT +1. The time now is 10:28 PM.