Solved

IP packet sniffer in C++ with Windows NT??? Any hints, source code???

Posted on 2001-08-09
4
1,247 Views
Last Modified: 2013-12-03
Hi,

I would like to build a simple IP packet sniffer (like those under Solaris --snoop) in C++.
So far I have seen this done only with W2K...

Does any one of you know of a place where I can get sample source code to start my
coding? I'd simply would like to sort by IP address To the From ;-)

So I need to be able to
1) sense the "wire"
2) read from it
3) open a packet
4) retrieve the from and to ip address

how can this be done using NT api???
0
Comment
Question by:aquila98
  • 2
  • 2
4 Comments
 
LVL 32

Expert Comment

by:jhance
ID: 6369834
0
 
LVL 2

Author Comment

by:aquila98
ID: 6372085
Interesting this rawether!

But I was really hoping to learn HOW to do it myself as opposed to just buying a
software...

Yet, this means that there IS a way to do it in NT, so that's good ;-) There is hope!!!

0
 
LVL 32

Accepted Solution

by:
jhance earned 150 total points
ID: 6372190
1) Read the information on www.rawether.net.  There is a lot of background information.

2) Get the DDK.  There is a sample NDIS intermediate driver there.  It's poorly done and poorly documented but it's all there is.

3) If you ONLY are interested in TCPIP, there is the WINSOCK 2 instrumented library.  It's not re-distributable but it does give you packet level access to the protocol.

4) Windows XP has full support for RAW adapter access.  It's somewhat controversial (See: http://grc.com/dos/xplaughter.htm) but my opinion is that those who want to wreak havoc can ALREADY do so.  Any capabilities in XP will be insignificant!!
0
 
LVL 2

Author Comment

by:aquila98
ID: 6379589
It seems to work...

Thanks
0

Featured Post

Master Your Team's Linux and Cloud Stack

Come see why top tech companies like Mailchimp and Media Temple use Linux Academy to build their employee training programs.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This tutorial is about how to put some of your C++ program's functionality into a standard DLL, and how to make working with the EXE and the DLL simple and seamless.   We'll be using Microsoft Visual Studio 2008 and we will cut out the noise; that i…
What my article will show is if you ever had to do processing to a listbox without being able to just select all the items in it. My software Visual Studio 2008 crystal report v11 My issue was I wanted to add crystal report to a form and show…
This is Part 3 in a 3-part series on Experts Exchange to discuss error handling in VBA code written for Excel. Part 1 of this series discussed basic error handling code using VBA. http://www.experts-exchange.com/videos/1478/Excel-Error-Handlin…
In a recent question (https://www.experts-exchange.com/questions/28997919/Pagination-in-Adobe-Acrobat.html) here at Experts Exchange, a member asked how to add page numbers to a PDF file using Adobe Acrobat XI Pro. This short video Micro Tutorial sh…

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question