10-17-2011
Will Linux force NIC into promiscuous mode?
Right now I have a computer that I want to use as the monitor for my network. It's currently running Windows 7, and so as I understand it the NIC won't monitor all the traffic on the network. So my question is, if I install Linux on this computer will I be able to force the NIC card into promiscuous mode? I know there are hardware solutions for the problem such as from CACE, but I'd rather that be a last resort.
10 More Discussions You Might Find Interesting
1. IP Networking
/* SCO OpenServer 5 */
anyone know an effective way to tell what machines, if any, are running in promiscuous mode??
e0- (1 Reply)
Discussion started by: LowOrderBit
1 Replies
2. UNIX for Advanced & Expert Users
Does any body knows how to force NIC to 100 Full Duplex in Solaris 8, should survive after reboot or shutdown. (1 Reply)
Discussion started by: s_aamir
1 Replies
3. UNIX for Dummies Questions & Answers
yeah, I tried basically everything I can find from reading books and asking people but I haven't gotten it to work.
is there anything else that can be done. I mean, this internal modem I got is like the last thing I expected Linux not to find (2 Replies)
Discussion started by: TRUEST
2 Replies
4. Cybersecurity
Does any body knows how to force NIC to 100 Full Duplex in Solaris 8, should survive after reboot or shutdown. (2 Replies)
Discussion started by: s_aamir
2 Replies
5. IP Networking
Hallo,
I want to use tcpdump to analyze the NTP traffic on some of my machines. The machines that I want to analyze run HP-UX and linux. To use tcpdump 2 packages are required Libpcap and Tcpdump. I know that tcpdump (libcap?) sets the network interface to promiscuous mode. I have some... (1 Reply)
Discussion started by: one71
1 Replies
6. SuSE
Hi All,
I used to have my suse linux(VM) server in graphic mode but not anymore since morning. I cant rolback since i loose somuch work. Any idea how to it back to normal. Thanks (6 Replies)
Discussion started by: s_linux
6 Replies
7. IP Networking
Hello,
I have windows 2000 on my pc and in order to capture network traffic it is required to to bring the NIC into promiscious mode.
Can any one please guide me what is required to achieve it?
thanks in advance. (2 Replies)
Discussion started by: sureshcisco
2 Replies
8. AIX
Hi Guys,
What do I need to do to set an physical adapter to promiscuous mode?
The networkport is already spanned/mirrored.
Is this also possible when there is an virtual nic (through vios) configured?
regards,
Randy (7 Replies)
Discussion started by: raba
7 Replies
9. UNIX for Advanced & Expert Users
Hi, all:
The physical network interface card should drop the packets if it doesn't match the MAC address of the NIC. In my PC, however, the packets which shoud be dropped trigger the interrupt function of my own driver and are recieved as skb to be transfered to the upper layer!
Why? How... (1 Reply)
Discussion started by: liklstar
1 Replies
10. Red Hat
Hi all,
I am using a Linux VM.
Once the node boots up, I am able to access it and it is able to ping its default gateway.
At that time, the config is;
eth1 Link encap:Ethernet HWaddr 00:50:56:01:01:FB
inet addr:142.133.174.246 Bcast:142.133.175.255 ... (1 Reply)
Discussion started by: Junaid Subhani
1 Replies
niff(7) Miscellaneous Information Manual niff(7)
NAME
niff - Network Interface Failure Finder (NIFF) introductory information.
DESCRIPTION
The Network Interface Failure Finder, NIFF, is a facility for detecting and reporting possible failures in network interface cards (NICs)
or their connections. Detection is done by monitoring device counters and attempting to generate traffic to NICs suspected of having
failed. Reporting is done using the Event Manager subsystem (EVM). NIFF does not drive failover operations; that is the responsibility of
the application that subscribes to NIFF's EVM events. Appropriate courses of action may include selecting another network interface for
communication or if it is a clustered environment, migrating an application. See nr(7) for further information.
At the heart of NIFF is the traffic monitor thread. The traffic monitor thread tracks changes in the network device's counters, and notes
if the received packet counter remains unchanged since the previous snapshot. As long as the counter continues to increase, the traffic
monitor thread assumes the NIC is functioning. See nifftmt(7) for further information.
The traffic monitor thread can monitor any network interface. The configuration utility, niffconfig, is used to activate and administer
the traffic monitor thread. See nifftmt(7) and niffconfig(8) for further information.
The Network Interface Failure Finder daemon, niffd, is a traffic generator for network interfaces that have been classified inactive by the
kernel traffic monitor thread. The purpose of niffd is to get the interface packet counters to increment, signifying the interface is still
alive and well. See niffd(8) for further information.
SEE ALSO
:
nifftmt(7), nr(7), niffconfig(8), niffd(8) delim off
niff(7)