Abstract

This chapter shows three different means to tap non-intrusively into the data that flows among computers. When local system traffic monitoring is all that is required, use of the pure .NET implementation is highly recommended, but for an enterprisewide implementation, PacketX combined with WinPCap is possibly the best option. Where financial constraints prevent the use of a third-party commercial component, rvPacket may point in the right direction. It would be impossible to document the format of every protocol that could exist on a network, so only IP and TCP are described. Traffic-detection software is used to detect packets on a network that could uncover viruses, use of unauthorized software, and email forgery. Denial-of-service attacks could be detected from the presence of a large number of corrupted packets sent to a particular server.

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.