Snort mailing list archives

Re: [RGSPAM] Re: Semi-OT: Re-inject tcpdump captured traffic


From: Martin Roesch <roesch () sourcefire com>
Date: Thu, 6 Dec 2007 10:14:14 -0500

On Dec 6, 2007, at 8:39 AM, Jordi Espasa Clofent wrote:

And this time I'll include the proper URL.... ->
http://bittwist.sourceforge.net/

Interesting tool also.
Nevertheless, in my case, I need to work on gigabit medium, so  
bittwist
(which is designed for 10/100 link speed) it's not exactly what I  
want.
At present moment my production environment has a 130-150Mbps network
load; moreover I'll generate 2x/3x/5x (according the present value)  
load
traffic to test the FW's performance and scability.


You might want to check out DaemonLogger, it's got a replay mode as  
well as a real-time tap mode as well as being a packet logger itself.   
Basically, DaemonLogger can capture traffic off of one interface  
direct to the disk (logger mode), retransmit it out another interface  
in real-time (tap mode) or replay a pcap file (replay mode).

You can get it at http://www.snort.org/users/roesch/Site/Daemonlogger/Daemonlogger.html 
.

--
Martin Roesch - Founder/CTO, Sourcefire Inc. - +1-410-290-1616
Sourcefire - Security for the Real World - http://www.sourcefire.com
Snort: Open Source IDP - http://www.snort.org



-------------------------------------------------------------------------
SF.Net email is sponsored by: The Future of Linux Business White Paper
from Novell.  From the desktop to the data center, Linux is going
mainstream.  Let it simplify your IT future.
http://altfarm.mediaplex.com/ad/ck/8857-50307-18918-4
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: