Can you describe what packet sniffers are and how they operate?

Computer Networking: A Top-Down Approach (7th Edition)
7th Edition
ISBN:9780133594140
Author:James Kurose, Keith Ross
Publisher:James Kurose, Keith Ross
Chapter1: Computer Networks And The Internet
Section: Chapter Questions
Problem R1RQ: What is the difference between a host and an end system? List several different types of end...
icon
Related questions
Question
Can you describe what packet sniffers are and how they operate?
Transcribed Image Text:Can you describe what packet sniffers are and how they operate?
Expert Solution
Step 1

Packet sniffers or protocol analyzers are tools used by network technicians to diagnose network-related problems. Hackers use packet sniffers for less noble purposes, such as spying on network users' traffic and collecting passwords.

Packet sniffers come in several forms. Some packet sniffers used by network technicians are single-purpose hardware solutions. In contrast, other packet sniffers are software applications that run on standard consumer computers and use the network hardware provided on the host device to perform packet capture and injection tasks.

A packet sniffer—also known as a packet analyzer, protocol analyzer, or network analyzer—is a piece of hardware or software used to monitor network traffic. Sniffers work by examining the streams of data packets that flow between computers on a network, as well as between computers on a network and the larger Internet. These packets are intended for—and addressed to—specific machines, but using a packet sniffer in "promiscuous mode" allows IT professionals, end users, or malicious intruders to examine any packet regardless of destination. Sniffers can be configured in two ways. The first is "unfiltered", which means it captures all possible packets and writes them to the local hard drive for later examination. Another is "filtered" mode, which means that the analyzers will only capture packets that contain specific data elements.

Packet sniffers can be used on both wired and wireless networks - their effectiveness depends on how much they are able to "see" due to network security protocols. In a wired network, sniffers may have access to the packets of every connected computer or may be limited by the location of network switches. In a wireless network, most sniffers can only scan one channel at a time, but using multiple wireless interfaces can extend this capability.

steps

Step by step

Solved in 2 steps

Blurred answer
Recommended textbooks for you
Computer Networking: A Top-Down Approach (7th Edi…
Computer Networking: A Top-Down Approach (7th Edi…
Computer Engineering
ISBN:
9780133594140
Author:
James Kurose, Keith Ross
Publisher:
PEARSON
Computer Organization and Design MIPS Edition, Fi…
Computer Organization and Design MIPS Edition, Fi…
Computer Engineering
ISBN:
9780124077263
Author:
David A. Patterson, John L. Hennessy
Publisher:
Elsevier Science
Network+ Guide to Networks (MindTap Course List)
Network+ Guide to Networks (MindTap Course List)
Computer Engineering
ISBN:
9781337569330
Author:
Jill West, Tamara Dean, Jean Andrews
Publisher:
Cengage Learning
Concepts of Database Management
Concepts of Database Management
Computer Engineering
ISBN:
9781337093422
Author:
Joy L. Starks, Philip J. Pratt, Mary Z. Last
Publisher:
Cengage Learning
Prelude to Programming
Prelude to Programming
Computer Engineering
ISBN:
9780133750423
Author:
VENIT, Stewart
Publisher:
Pearson Education
Sc Business Data Communications and Networking, T…
Sc Business Data Communications and Networking, T…
Computer Engineering
ISBN:
9781119368830
Author:
FITZGERALD
Publisher:
WILEY