Great Circle Associates Firewalls
(April 1998)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: How can I detect packet sniffer
From: Frank Willoughby <frankw @ in . net>
Date: Sat, 11 Apr 1998 17:21:59 -0500
To: Junwen Lai <jwlai @ www . ustc . edu . cn>
Cc: firewalls @ GreatCircle . com
In-reply-to: <Pine . LNX . 3 . 96 . 980411160423 . 31444D-100000 @ www . ustc . edu . cn>

At 04:05 PM 4/11/98 +0800, Junwen Lai allegedly wrote:

>   I am a newer to firewalls, but I want to known how I can detect packet
>sniffer in an Ethernet LAN, thanks all who would reply this letter.

Unless you are on the same system as the sniffer, there is no way to detect 
a NIC card running in promiscuous mode on a LAN.

HTH.

Best Regards,


Frank
The opinions of the author of this mail may not necessarily be 
representative of the opinions of Fortifed Networks, Inc.

(c) Fortified Networks, Inc. - http://www.fortified.com/
Home of the Free Internet Firewall Evaluation Checklist
Expert (vendor-neutral) Computer and Network Security Solutions
Phone: (317) 573-0800     Fax: (317) 573-0817


Follow-Ups:
References:
Indexed By Date Previous: RE: SATAN for NT
From: "Jarmon, Don R" <drjarmon @ ingr . com>
Next: UnLurk
From: "Jason L. Asbahr" <jason @ revenant . com>
Indexed By Thread Previous: How can I detect packet sniffer
From: Junwen Lai <jwlai @ www . ustc . edu . cn>
Next: Re: How can I detect packet sniffer
From: Antonio Paulo Salgado Forster <forster @ na-cp . rnp . br>

Google
 
Search Internet Search www.greatcircle.com