Tcpreplay 2.0 released & Call for help
Aaron Turner <[email protected]>
| Newsgroups | gmane.comp.security.libnet |
|---|---|
| Message-ID | <[email protected]> |
After about 8 months of development as 1.5.alpha, I've released version 2.0 stable. For those of you who are still on 1.4.x, you'll find almost twice as many features. I've even added a feature or two since the last 1.5.alpha snapshot so even if you've been keeping up to date, you'll still want to upgrade. I can't list all the new features here, but here's a few of the more intresting ones since 1.4.6: - Integration with tcpdump allows decoding of packets as they are sent - Ability to send one packet at a time, so the decode feature is actually useful :) - Uni/Bi-directional sniff/send allows listening on one or two interfaces and sending out the other. - All sorts of Layer 2 hacking allows all sorts of interesting posibilities including the ability to use Linux SLL pcap's (tcpdump -i any) - Support for fixing IP, TCP, UDP, ICMP checksums - Write packets or just their Layer 7 data to files instead of the network - Support for files > 2GB - And of course, a much improved FAQ Of course since the code is now in the stable branch, that means that there are no bugs anymore. If you see a bug^H^H^H undocumented feature, please let me know so that I can fix it. Now for that "call for help part". So a few months ago, I recieved a zip file of tcpreplay ported to run on Windows. Unfortunately, it was against an older version of tcpreplay and it wasn't something that I could just hack in and hope that it would work. Also, I don't use windows or have a box to do windows development on, so even if I was interested in doing the work, I can't. So I'm looking for someone who is familar with windows programming and ideally libpcap/libnet on Windows to merge in the code and hopefully keep it working as I add new features. If this sounds interesting to you let me know. Since I just uploaded the tarball onto the SF.net servers, most likely not all of the mirrors have synced it yet. So if one doesn't work, try another. https://sourceforge.net/project/showfiles.php?group_id=48862&package_id=42794&release_id=214217 Lastly, I just (while I was writing this email) found out someone wrote a QT front end tcpdump and tcpreplay. No idea if it works or not, but it's probably worth taking a look: http://microsail.it/tcpamp/ -- Aaron Turner <aturner at pobox.com|synfin.net> http://synfin.net/ They that can give up essential liberty to obtain a little temporary safety deserve neither liberty nor safety. -- Benjamin Franklin All emails are PGP signed; a lack of a signature indicates a forgery.
signature.asc
(application/pgp-signature, 189 B)
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQFAHU6ghweYF/hu2uYRAqMLAJ9OqOIwukaqYwU+fO0z5DcGcFEeCQCeIRYC 0oJxtzfPOPdzqbdtYVaUruo= =2aog -----END PGP SIGNATURE-----