Log in

Sniffing on a switch - where wanderlust leads ...

Tyler J. Wagner (ابو پاسكال)
Date: 2010-11-26 21:34
Subject: Sniffing on a switch
Security: Public
Tags:networking, security, wireshark

Originally published at tolaris.com. You can comment here or there.

I’m an IP network engineer. When something goes wrong, the first thing I do is sniff packets. Got a SIP phone that won’t register? Forget reading logs; sniff 5060/udp and read the SIP chatter directly. A customer complains that “Yahoo chat doesn’t work”? Sniff 5050/tcp and look for TCP hangups, login failures, or ICMP “port unreachable” messages.

Sniffing is easy when you have access to the intermediate router, but that isn’t always the case. What if you’re just another PC on the same switch? That’s impossible, right?

Read the rest of this entry »

Post A Comment | 1 Comment | Share | Link

yes peace
User: yes_justice
Date: 2010-11-26 22:31 (UTC)
Subject: (no subject)
Fun and informative. Thanks.
Reply | Thread | Link

my journal
January 2011