- Posts: 5
- Thank you received: 0
[ask] traffic analysing
Once my friend told me this, that we can use wireshark to analyze our network traffic, so from there we can analyze what is our bandwidth is used for.
From the capture data, we can get a lot of information, like what websites that has been accessed, user name and even passwords. But the most important thing is we can learn the internet habit of the users. Like in one day what is the most things users do, like maybe online chat (YM, AIM, Irc) or downloading, or just http, or maybe ftp,or maybe streaming.
Is that all true?
Thank you in advance
Hi all,
Once my friend told me this, that we can use wireshark to analyze our network traffic, so from there we can analyze what is our bandwidth is used for.
From the capture data, we can get a lot of information, like what websites that has been accessed, user name and even passwords. But the most important thing is we can learn the internet habit of the users. Like in one day what is the most things users do, like maybe online chat (YM, AIM, Irc) or downloading, or just http, or maybe ftp,or maybe streaming.
Is that all true?
Thank you in advance
hmm do you have any link where i can read a complete tutorial for that, from novice to advance, like how to decode the captured data?
thank you
Also, you would need to monitor a lot of traffic and would therefore generate a huge capture file.
I would look at products to do this for you and if you have concerns about bandwidth and possibly throteling whats going on then something like PacketShaper or NetEnforcer which can also optimise the traffic for you
Wayne Murphy
Firewall.cx Team Member
www.firewall.cx
Now working for a Security Company called Sec-1 Ltd in the UK, for any
Penetration Testing work visit www.sec-1.com or PM me for details.
- gagamboy
- Visitor
Cheers!
From the capture data, we can get a lot of information, like what websites that has been accessed, user name and even passwords.
But the most important thing is we can learn the internet habit of the users. Like in one day what is the most things users do, like maybe online chat (YM, AIM, Irc) or downloading, or just http, or maybe ftp,or maybe streaming.
The following might not be an exact match but can help.
I personally use "Commview" www.tamos.com/products/commview/ for general network sniffing. You can know the websites URLs, protocol statistics and even decode complete http conversations back into html. Check also this one www.networkactiv.com/PIAFCTM.html which can also do http decoding. Passwords can be monitored by "Cain & Abel"
As gagamboy noted, "Netflow analyzer" from Sollarwinds has some pretty cool features if you already have cisco equipment that you want to monitor. PRTG Network Monitor is also a good one www.paessler.com/prtg7
Studying CCNP...
Ammar Muqaddas
Forum Moderator
www.firewall.cx