|
-
January 27th, 2009, 05:34 PM
#12
Sniffing with a prog like wireshark, tcpdump, snoop can give huge files to dig in too, not to talk about the space you'd need. I would recommend not going in tcp-flag level debugging unless you are troubleshooting.
What you can do is simply use a firewall. Most nix-base firewalls have nice logging, aside of a proxy and snort IDS, and they log the time sessions have been open, etc, etc ... What more do you need ? 
I'd recommend Smoothwall or Astaro from personal experience.
Greetz.
Similar Threads
-
By GbinaryR in forum AntiVirus Discussions
Replies: 11
Last Post: October 30th, 2008, 09:33 AM
-
By TheDirector in forum Computer Forensics
Replies: 10
Last Post: June 1st, 2003, 01:59 AM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|