Sniffer Pro网络分析程序完全讲义(WORD版)
SnifferPro是一种很好的网络分析程序,许可管理员逐一数据包检测通过网络的实践数据,然后理解网络的实践运行状况。它具有以下特色:1.可以解码最少450种协议。除了IP、IPX和其它一些“规范”协议外,SnifferPro还可以解码分析很多由厂商自己开发或许使用的专门协议,比方思科VLAN中继协议(ISL)。2.支持首要的局域网(LAN)、城域网(WAN)等网络技术(包括高速与超高速以太网、令牌环、802.11b无线网、SONET传递的数据包、T-1、帧推迟和ATM)。3.提供在位和字节水平上过滤数据包的才能。4.提供对网络问题的高级分析和确诊,并推荐应该采纳的正确方法。5.SwitchExpert可以提供从各种网络交换机查询计算成果的功能。6.网络流量生成器可以以千兆的速度运行。7.可以离线捕获数据,如捕获帧。因为帧通常都是用8位的分界数组来校准,所以SnifferPro只能以字节为单位捕获数据。但过滤器在位或许字节水平都可以定义。需求注意的是,使用Sniffer捕获数据时,由于网络中传输的数据量格外大,假如安装Sniffer的计算机内存太小,会致使系统交换到磁盘,然后使功能降低。假如系统没有满足的物理内存来执行捕获功能,就很容易形成Sniffer系统死机或许崩溃。因而,网络中捕获的流量越多,Sniffer系统就应该运行得更快、功能更强。因而,建议Sniffer系统应该有一个速度尽可能快的管理器,以及最少512MB的物理内存。sniffer.doc
包括多个文件,请自行下载检测!
(SnifferPro is a good network analysis program that allows administrators to inspect the actual data going through the network packet by packet, and then understand the actual health of the network. It has the following features: 1. Can decode at least 450 protocols. In addition to IP, IPX, and some other "canonical" protocols, SnifferPro can decode and analyze many proprietary protocols developed or used by manufacturers themselves, such as the Cisco VLAN Trunk Protocol (ISL). 2. Supports major local area network (LAN), metropolitan area network (WAN) and other network technologies (including high-speed and ultra-high-speed Ethernet, token ring, 802.11b wireless, SONET packets, T-1, frame delay and ATM). 3. Provides the ability to filter packets at the bit and byte level. 4. Provides advanced analysis and diagnosis of network problems and recommends the correct approach that should be taken. 5.SwitchExpert can provide the function of querying calculation results from various network switches. 6. The network traffic generator can run at gigabit speed. 7. Data can be captured offline, such as capture frames. SnifferPro can only capture data in bytes because frames are usually aligned with 8-bit delimited arrays. But filters can be defined at the bit or byte level. It should be noted that when using Sniffer to capture data, since the amount of data transmitted in the network is extremely large, if the memory of the computer where Sniffer is installed is too small, the system will be swapped to the disk, and then the function will be reduced. If the system does not have enough physical memory to perform the capture function, it is easy to cause the Sniffer system to crash or crash. Thus, the more traffic captured on the network, the faster and more functional the Sniffer system should run. Therefore, it is recommended that the Sniffer system should have a manager as fast as possible, and at least 512MB of physical memory.
sniffer.doc
Including multiple files, please download and test by yourself!)
页:
[1]