TAILIEUCHUNG - Packet sniffer – A comparative study
This paper gives a brief introduction of what is a packet sniffer, its structure and what is its working. Then key features of top packet sniffing tools (. Wireshark, TCPdump and Colasoft Capsa) are discussed. Further, the above tools are compared on the basis of characteristic behaviour and quantitative parameters. Finally, one gets the best tool amongst these three in a particular situation. | International Journal of Computer Networks and Communications Security C VOL. 2, NO. 5, MAY 2014, 179–187 Available online at: ISSN 2308-9830 N C S Packet Sniffer – A Comparative Study Dr. Charu Gandhi1, Gaurav Suri2, Rishi P. Golyan3, Pupul Saxena4, Bhavya K. Saxena5 1 Assistant professor, Department of computer science, JIIT, Noida-201307 2, 3, 4, 5 Student, Department of computer science, JIIT, Noida-201307 E-mail: , 2 , 3 , 4 pupul9910103466@, 5 ABSTRACT Packet Sniffer is a tool which captures all the packets on the network irrespective of the final destination of the packet. Packet Sniffer could be used to monitor the bottlenecks in the network, alarm the irregular behaviour in the network, capture passwords and VoIP from any system in that network. This paper gives a brief introduction of what is a packet sniffer, its structure and what is its working. Then key features of top packet sniffing tools (. Wireshark, TCPdump and Colasoft Capsa) are discussed. Further, the above tools are compared on the basis of characteristic behaviour and quantitative parameters. Finally, one gets the best tool amongst these three in a particular situation. Keywords: Packet Sniffer, Wireshark, Colasoft Capsa, TCPdump, Packet capture, Network monitoring tools. 1 INTRODUCTION Packet sniffing is a technology which captures the packets passing through the network in which it is installed. Packet sniffer is a tool which monitors all the network data. Furthermore, it can intercept and log incoming and outgoing traffic across the network. The information that travels across a network is transmitted in form of "packets." For example, in a network, the packet is sent from one computer to another, initially the packet is broken up into smaller segments with destination and source address attached, and other useful information. But, if packet sniffer is .
đang nạp các trang xem trước