Re: Network Analysis / Diagramming Tool

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Wireshark will listen on the line..

Why not start using netstat -ano on your boxes? That will tell you
what each computer is listening for or connecting to...
---
Jeffrey Randow
jeffreycentex@xxxxxxxxx
Windows Networking MVP 2001-2006
http://www.networkblog.net


On Fri, 9 Nov 2007 01:56:02 -0800, gary0371
<gary0371@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote:

Does anyone know of a (free) tool that I can use to analyse the
communications between Windows systems in order to help me determine what
firewall ports need to be open for certain operations.

Essentially what I want to do is, in a test environment, open up all
(firewall) ports
and run through some test scenarios whilst the analyser capture the
communications. I then want to be able to use the packet capture to
automatically create a diagram to determine what boxes are talking what
protocols/ports to each other during each scenario. I would then use this
to define the firewall rules.

Any suggestions appreciated.
.



Relevant Pages

  • Re: Suggest firewall for Win98se+ICS(dialup)+NAV
    ... to go out and buy all new boxes capable of running Win 2000 Pro or Win XP ... |> either disable the firewall or otherwise change its settings. ... vulnerability in a small business environment is from the inside, ... Any disgruntled Win 98 SE user can obviously walk in and install something ...
    (comp.security.firewalls)
  • Re: opening ports
    ... If a service is listening but blocked by a firewall, ... If it's listening and not blocked, ... FTP is an evil protocol that has many traps. ... Basically when a client switches to passive mode, the FTP server ...
    (Ubuntu)
  • Re: Can I protect myself against network attacks?
    ... I consider the SP2 PFW "half a firewall", and many I've read say it ... or listening in, and no virus or trojans from a system scan via KAV. ... After all, the attacks did ...
    (comp.security.firewalls)
  • RE: Access to the servers from outside
    ... the first line shows us that port 80 is listening on ... > run the tcpdump command to see if we're actually receiving the TCP ... > We're definitely seeing the connection from the client, ... Let's focus on the firewall. ...
    (RedHat)
  • Re: [fw-wiz] segmentation of DMZs
    ... public as well as private boxes. ... In fact, separate zones can make some things easier, for instance when ... as they pass through the firewall, so that the response always passes ... "open ports x,y,z and 1024-65535 in both directions", etc. ...
    (Firewall-Wizards)