Use the winpractice file for the following exercises. Capture your filtered traffic to a file. Submit the file (with a .txt extension) and the full command you used. For Snort, submit the entire alert. 1. Use Windump to filter on all echo reply packets. 2. Use Windump to filter on all packets destined for 172.20.42.32. Do not use name resolution. 3. Use Snort to alert on any tcp traffic with only the SYN and FIN flags set. Label the alert packets with an appropriate message.
Use the winpractice file for the following exercises. Capture your filtered traffic to a file. Submit the file (with a .txt extension) and the full command you used. For Snort, submit the entire alert. 1. Use Windump to filter on all echo reply packets. 2. Use Windump to filter on all packets destined for 172.20.42.32. Do not use name resolution. 3. Use Snort to alert on any tcp traffic with only the SYN and FIN flags set. Label the alert packets with an appropriate message.
Chapter12: Network Configuration
Section: Chapter Questions
Problem 2DE
Related questions
Question
Use the winpractice file for the following exercises. Capture your filtered traffic to a file. Submit the file (with a .txt extension) and the full command you used. For Snort, submit the entire alert.
1. Use Windump to filter on all echo reply packets.
2. Use Windump to filter on all packets destined for 172.20.42.32. Do not use name resolution.
3. Use Snort to alert on any tcp traffic with only the SYN and FIN flags set. Label the alert packets with an appropriate message.
Expert Solution
This question has been solved!
Explore an expertly crafted, step-by-step solution for a thorough understanding of key concepts.
Step by step
Solved in 3 steps
Knowledge Booster
Learn more about
Need a deep-dive on the concept behind this application? Look no further. Learn more about this topic, computer-science and related others by exploring similar questions and additional content below.Recommended textbooks for you
LINUX+ AND LPIC-1 GDE.TO LINUX CERTIF.
Computer Science
ISBN:
9781337569798
Author:
ECKERT
Publisher:
CENGAGE L
LINUX+ AND LPIC-1 GDE.TO LINUX CERTIF.
Computer Science
ISBN:
9781337569798
Author:
ECKERT
Publisher:
CENGAGE L