Chapter 18 - Supplement - Sheet1 Flashcards
3 Types of tools ‘network scanner’ refers to
Packet sniffers, IDS/IPS systems, port scanners
Packet Sniffer
Look inside every packet on a network segment.
Network Analyzer
When a packet sniffer can also provide network statistics, like network utilization and packet traffic data
Microsoft’s free packet sniffer
NetMon
Wireshark
Multi-platform packet sniffer
Difference between IDS and IPS
Intrusion Detection System versus Intrusion Prevention System. IDS detects unwanted attempts to manipulate network systems / environments. IPS monitors network / system activities for strange / malicious behavior and can react in real time to prevent or block intrusion activities.
Snort
One of the most popular IDS/IPS applications available. Multi-platform, open-source
Port Scanners
Software tool designed to search a host for open ports
What is a port scan
Scan for TCP and UDP open ports on a single target host to legitimately connect or to steal data or manipulate the host
What is port sweeping
Scanning multiple hosts on a network for a specific listening TCP or UDP port, like SQL.
Two open-source applications that can be used for port scanner
AngryIP, Nmap (Network Mapper)
Loopback Plug
Allows for a diagnostic procedure on the host wherein a signal is transmitted and returned to the sending device.
Wire-Map Tester
Transmits signals through each wire in a copper twiested-pair cable to dtermine if it’s connected to the correct pin on the other end.
Continuity Testers
Checks a copper cable connetion for basic isntallation problems like opens, shorts, and crossed pairs.
Protocol Analyzer
Analyzes network traffic (instead of just “sniffing” them) and can help troubleshoot complex problems.