Ethereal Packet Sniffing (Syngress) (英語) ペーパーバック – 2004/4/21
Kindle 端末は必要ありません。無料 Kindle アプリのいずれかをダウンロードすると、スマートフォン、タブレットPCで Kindle 本をお読みいただけます。
This book provides system administrators with all of the information as well as software they need to run Ethereal Protocol Analyzer on their networks. There are currently no other books published on Ethereal, so this book will begin with chapters covering the installation and configuration of Ethereal. From there the book quickly moves into more advanced topics such as optimizing Ethereal's performance and analyzing data output by Ethereal.
Ethereal is an extremely powerful and complex product, capable of analyzing over 350 different network protocols. As such, this book also provides readers with an overview of the most common network protocols used, as well as analysis of Ethereal reports on the various protocols. The last part of the book provides readers with advanced information on using reports generated by Ethereal to both fix security holes and optimize network performance.
· Provides insider information on how to optimize performance of Ethereal on enterprise networks.
· Book comes with a CD containing Ethereal, Tethereal, Nessus, Snort, ACID, Barnyard, and more!
· Includes coverage of popular command-line version, Tethereal.
If you do not already have this book and know how to use Ethereal, you should buy this book soon. Start by reading the book, but you really should learn to use Ethereal "hands on", on your LAN as soon as possible. You need to know what "normal" conditions look like on your LAN. When your LAN is down, you probably will not have time for much reading. This book provides far too much information to digest and understand at one time, especially while your LAN is down. This is a book to read when you have some "slow" time because your network is OK.
I gave this book 4 stars only because I think a new edition should be released soon. The current edition is now several years old, and with the name of the software recently changed to Wireshark, the book should be updated with the new name for this classic LAN troubleshooting tool.
This book is more like a very good user manual for version 0.10.0 (current version as of 4/20/06 is 0.10.14, so there are a few more features than this book covers.) What seems to be a new version of the book with a new title is due out in June of 2006, so some of you might want to wait until it gets released if you want the most up to date version.
I've been just a casual user of Ethereal for a couple years so I thought I'd learn a lot from this book. Surprisingly though, only chapters 5 "Filters" and 8 "Real World Packet Captures" were helpful to me. Everything else was either stuff I could easily figure out on my own, or things I don't use.
Except for chapter 8 with the real-world examples and possibly chapter 9, "Developing Ethereal", this book is just a user manual and should be bought only with this in mind. It would be fun if they made another book that focuses on packet analyzation using Ethereal as the tool. I'll wait.
Evaluated as a user manual only, I'll give it 4 stars. Because it's merely a user manual, it should be less expensive. Then it would earn 5 stars.
The opening chapter provides a very good overview of network analysis for those who are new to the whole concept. It answers questions like "What Is Network Analysis and Sniffing?" and "How Does It Work?".
One of the nice things about this book is that it is completely dedicated to this one product. So, rather than hitting the highlights of various applications and glossing over features and functionality this book provides entire chapters devoted to installing and using Ethereal's basic functionality and then goes on to cover advanced concepts in great detail.
Chapter 7 explains how to integrate Ethereal with other products and using Ethereal to analyze data from applications such as Snort, Snoop, Microsoft Network Monitor and more. Because Ethereal is open source anyone with an idea and some extra time is welcome to contribute to the project by developing Ethereal further. Chpater 9 is dedicated to illustrating what you need to know as a developer to help improve Ethereal.
The book comes with a CD which contains Ethereal among other things, but CD's are quickly outdated and you are better off downloading the current Ethereal from the site. Regardless, this book is a must have for anyone running Ethereal and is well worth the money.