Traffic Analysis Tools, computer science homework help

User Generated

znyjnsv

Computer Science

Description

In this assignment, you assume the role of an employee of the DigiFirm Investigation Company. DigiFirm experienced strong profits last quarter and is interested in adding network traffic analysis tools to its lab. You have been asked to research sniffers and other network analysis tools.

There are several sniffers and other tools available for traffic analysis, including:

  • Tcpdump and WinDump
  • Wireshark
  • HTTPSniffer
  • Nmap
  • Snort
  • Retina
  • CoreImpact

You must research these products, and then write a proposal in which you describe the tools’ capabilities and recommend two products to be added to DigiFirm’s lab, and you must justify your recommendations.

Deliverable:

For this assignment, you are to:

  • Research these sniffers and other tools available for traffic analysis, compare the capabilities and, write a professional proposal in which you recommend two products for use in the DigiFirm Lab, and justify your recommendation.
  • Your proposal should be at 4-5 pages in length.Be sure your report adheres to the academic writing standards and APA style guidelines, citing references as appropriate.

User generated content is uploaded by users for the purposes of learning and should be used following Studypool's honor code & terms of service.

Explanation & Answer

please find the attached file. i look forward to working with you again. good bye

Running Head: TRAFFIC ANALYSIS TOOLS

Traffic Analysis Tools
Course Title
Student Name
Tutor
Date of Submission

1

TRAFFIC ANALYSIS TOOLS

2

Traffic Analysis Tools
Tcpdump
There are a number of traffic analysis tools that are used in organizations in organization
of data. Tcpdumb is a packet analyzer that is and operates under a line of command. Tcpdumb
allows the other packets to be displayed by the user. Additionally, the analysis tool allows
transmission and receiving of packets where a network is used to share online. The operating
systems that are Unix in nature are the most preferred for the operation of Tcpdumb. Some of
these systems include android and Linux. The tool can read the different packets which are in the
cards of network interface. Tcpdumb is connected to a printer and can therefore write the packets
to the output that is standard and also to files. The tool also works explicitly especially where it
is connected to a rooter. The tool is effective as it leads to viewing the loggings that have been
made earlier as well as the website content that has been surfed over the internet. Additionally,
all the unencrypted information can easily be viewed.
Wireshark
A wireshark is a tool that is usually used for analysis of documents in organizations. The
analyzer can be used in inspection and monitoring of traffic and also as a firewall. The analyzer
tool is also important in the identification of attacks...


Anonymous
Great study resource, helped me a lot.

Studypool
4.7
Trustpilot
4.5
Sitejabber
4.4

Related Tags