Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Capturing Live Network Traffic for Analysis #444

Open
mmguero opened this issue Nov 5, 2024 · 1 comment
Open

Capturing Live Network Traffic for Analysis #444

mmguero opened this issue Nov 5, 2024 · 1 comment
Labels
capture Relating to pcap-capture container train-configuration Training topic relating to installation or configuration training Related to developing and releasing Malcolm training

Comments

@mmguero
Copy link
Collaborator

mmguero commented Nov 5, 2024

@mmguero cloned issue idaholab/Malcolm#353 on 2024-01-15:

For what topic would you like to see training developed?

Describe the ways Malcolm can analyze live network traffic: via a sensor device (Hedgehog Linux) or by monitoring local network interfaces.

What format would be best suited for this training?

A video

Is there existing Malcolm documentation that could be improved by including this topic?

Live analysis

@mmguero mmguero added capture Relating to pcap-capture container train-configuration Training topic relating to installation or configuration training Related to developing and releasing Malcolm training labels Nov 5, 2024
@mmguero
Copy link
Collaborator Author

mmguero commented Nov 5, 2024

@mmguero commented on 2024-02-26:

Some notes for consideration:

  • time zones / time filters
  • sensors vs. Malcolm time in sync
  • differences in live vs. PCAP-uploaded traffic

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
capture Relating to pcap-capture container train-configuration Training topic relating to installation or configuration training Related to developing and releasing Malcolm training
Projects
Status: No status
Development

No branches or pull requests

1 participant