Great Circle Associates Firewalls
(April 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: probe_tcp_ports
From: Daniel R Ehrlich <ehrlich @ cse . psu . edu>
Date: Fri, 15 Apr 1994 16:39:19 -0400
To: Mike Evans <mre @ primus . com>
Cc: Dorian Deane <dorian @ cobalt . house . gov>, firewalls @ greatcircle . com
In-reply-to: Your message of Fri, 15 Apr 1994 15:55:15 EDT. <Pine . 3 . 89 . 9404151256 . A7174-0100000 @ primus . com>

>
>On Fri, 15 Apr 1994, Dorian Deane wrote:
>
>> >
>> > You can get ntop, a kmem-based window connection viewer (shows
>> > listening ports and uid), or even udplog from TAMU's netlog package.
>> >
>> > Mike
>> >
>> >
>> 
>> How are these things better than netstat?  netstat also uses kmem,
>> so it should be just as hard/easy to hide a connection, I would
>> think.
>> 
>> dorian
>
>ntop is like top but for tcp connections..
>
>

Where can one find all of these goodies?

Thanks,
Dan Ehrlich



References:
Indexed By Date Previous: Re: TIS Toolkit vs DEC's SEAL
From: "Matt D'Errico" <matt @ magna . com>
Next: Re: TIS Toolkit vs DEC's SEAL
From: Michael Platoff <map @ yogi . siemens . com>
Indexed By Thread Previous: Re: probe_tcp_ports
From: Mike Evans <mre @ primus . COM>
Next: Re: probe_tcp_ports
From: matthew green <mrgreen @ mame . mu . OZ . AU>

Google
 
Search Internet Search www.greatcircle.com