(SnifferPro is a good network analysis program that allows administrators to inspect the actual data going through the network packet by packet, and then understand the actual health of the network. It has the following features: 1. Can decode at least 450 protocols. In addition to IP, IPX, and some other "canonical" protocols, SnifferPro can decode and analyze many proprietary protocols developed or used by manufacturers themselves, such as the Cisco VLAN Trunk Protocol (ISL). 2. Supports major local area network (LAN), metropolitan area network (WAN) and other network technologies (including high-speed and ultra-high-speed Ethernet, token ring, 802.11b wireless, SONET packets, T-1, frame delay and ATM). 3. Provides the ability to filter packets at the bit and byte level. 4. Provides advanced analysis and diagnosis of network problems and recommends the correct approach that should be taken. 5.SwitchExpert can provide the function of querying calculation results from various network switches. 6. The network traffic generator can run at gigabit speed. 7. Data can be captured offline, such as capture frames. SnifferPro can only capture data in bytes because frames are usually aligned with 8-bit delimited arrays. But filters can be defined at the bit or byte level. It should be noted that when using Sniffer to capture data, since the amount of data transmitted in the network is extremely large, if the memory of the computer where Sniffer is installed is too small, the system will be swapped to the disk, and then the function will be reduced. If the system does not have enough physical memory to perform the capture function, it is easy to cause the Sniffer system to crash or crash. Thus, the more traffic captured on the network, the faster and more functional the Sniffer system should run. Therefore, it is recommended that the Sniffer system should have a manager as fast as possible, and at least 512MB of physical memory.
sniffer.doc
Including multiple files, please download and test by yourself!)