6,893 pts.
 What’s in your network security and troubleshooting toolkit?
Just curious what tools you have in your network toolkit? I've heard or used snort, TCPDump, NMap, but would love other suggestions

Software/Hardware used:
ASKED: April 14, 2010  3:38 PM
UPDATED: April 15, 2010  5:47 PM

Answer Wiki:
A couple of tools we use frequently: -<a href="http://www.wireshark.org/download.html">Wireshark</a> -<a href="http://technet.microsoft.com/en-us/sysinternals/bb897437.aspx">Sysinternal's TCPView</a> ----------------- Wireshark is a must! The <a href="http://technet.microsoft.com/en-us/sysinternals/default.aspx">Sysinternals toolkit</a> is another excellent selection of utilities for security managers. It is also very valuable to be able to use these tools "live" from the internet. Simply use the address <b>http://live.sysinternals.com/toolname.exe</b>. This will get you the latest version of the tool and you can be sure it is not malware. I also want to confirm that nmap is a must-have tool for scanning networks and finding open ports and listening services. You don't know what's happening on your network unless you listen (Wireshark) and scan (nmap). You can then use the Sysinternals tools (psexec for example to open a remote command shell) to investigate what you found with Wireshark and nmap.
Last Wiki Answer Submitted:  April 14, 2010  8:01 pm  by  carlosdl   63,580 pts.
All Answer Wiki Contributors:  carlosdl   63,580 pts.
To see all answers submitted to the Answer Wiki: View Answer History.


Discuss This Question:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _


 

The 2 tools Carlos mentioned are the best. Also on tasklist.exe from command prompt

 10 pts.

 

Thanks. Both replies are helpful!

 6,893 pts.

 

many security tools available here also

http://sectools.org/

 10 pts.

 

I use various free and commercial tools. NetScanTools , OmniPeek , BackTrack, and the various Tamosoft analyzers and tools are must-haves!

 11,040 pts.

 

wireshark also know before ethereal, nmap <—your network swiss utility knife and other bunch of tools that caters to your need

 1,205 pts.