SNOT

Annotated network sniffing
Download

SNOT Ranking & Summary

Advertisement

  • Rating:
  • License:
  • GPL
  • Publisher Name:
  • Eli Fulkerson
  • Operating Systems:
  • Windows All
  • File Size:
  • 31 KB

SNOT Tags


SNOT Description

The SNOT was designed to be a small console utility that sends UDP discard packets with a user specified message as their payload. This is used to insert 'notes' into ongoing network sniffs as generated by such programs as Ethereal or tcpdump. What this is useful for if you are trying to debug some specific network behavior. I have personally spent hours running a system that was having mysterious network issues through its paces, keeping a journal entry of timestamps and actions-performed-by-user in order to correlate the two later. Later, when correlating the two, you find out that your timestamps don't quite match, so it becomes difficult to isolate border-case traffic. The ideal 'dummy host' for you to aim this utility at would be a living ip address on your current subnet. This will do two things. One, it being on your subnet will make sure that you aren't routing wonky discard packets to other parts of the network and generally pissing people off. Two, it being alive will make sure that windows sends the packet out... I believe that if it is a locally routable address and there is no arp entry for that IP address, the message will never be sent out or seen in the sniff.


SNOT Related Software