./net/iplog, Iplog is a tool using pcap to log IP traffic

[ CVSweb ] [ Homepage ] [ RSS ] [ Required by ] [ Add to tracker ]


Branch: pkgsrc-2007Q3, Version: 2.2.3nb4, Package name: iplog-2.2.3nb4, Maintainer: gremlin

iplog is a TCP/IP traffic logger. Currently, it is capable of logging
TCP, UDP and ICMP traffic. Adding support for other protocols
should be relatively easy.

iplog's capabilities include the ability to detect TCP port
scans, TCP null scans, FIN scans, UDP and ICMP "smurf" attacks,
bogus TCP flags (used by scanners to detect the operating system in use),
TCP SYN scans, TCP "Xmas" scans, ICMP ping floods, UDP scans, and IP
fragment attacks.

iplog is able to run in promiscuous mode and monitor traffic to all hosts
on a network.

iplog uses libpcap to read data from the network and can be ported
to any system that supports pthreads and on which libpcap will function.


Master sites: (Expand)

SHA1: ce257d13ceb54bacb5cfe97570603868c7463cb2
RMD160: 879441d6cb3afe5bb8df42411fb821a2c7a0fad7
Filesize: 130.507 KB

Version history: (Expand)