Comparison of packet analyzers

The following tables compare general and technical information for several packet analyzer software utilities. Please see the individual products' articles for further information.

General information

Basic general information about the software—creator/company, license/price, etc.

Creator Latest release User interface Software license
Cain and Abel Massimiliano Montoro GUI Freeware
Capsa Free Edition Colasoft GUI Proprietary
Carnivore Federal Bureau of Investigation ? N/A
Clarified Analyzer Clarified Networks GUI Proprietary
Clusterpoint Network Traffic Surveillance System Clusterpoint web GUI Proprietary
CommView TamoSoft GUI Proprietary
dSniff Dug Song 2.3 / December 17, 2000[1] CLI BSD License
EtherApe Juan Toledo 0.9.13 / May 5, 2013[2] GUI GNU General Public License
Ettercap ALoR and NaGA 0.8.2-Ferri / March 14, 2015[3] Both GNU General Public License
justniffer The Justniffer team 0.5.12 / October 28, 2014[4] CLI GNU General Public License
Kismet Mike Kershaw (dragorn) Kismet-2013-03-R1b[5] / April 8, 2013 CLI GNU General Public License
netsniff-ng Daniel Borkmann 0.6.0 / CLI GNU General Public License
ngrep Jordan Ritter 1.45 (11/18/06) CLI BSD-style
Microsoft Network Monitor Microsoft GUI Proprietary
Observer Network Instruments GUI Proprietary
OmniPeek (formerly AiroPeek, EtherPeek) WildPackets GUI Proprietary
SteelCentral Transaction Analyzer OPNET Technologies/Riverbed Technology GUI Proprietary
snoop Sun Microsystems Solaris 10 / December 11, 2006 CLI CDDL
tcpdump The Tcpdump team 4.7.4 / April 22, 2015[6] CLI BSD License
Wireshark (formerly Ethereal) The Wireshark team 2.0.0 / 18 November 2015 Both GNU General Public License
Xplico The Xplico team 1.1.1 / November 2, 2015[7] Both GNU General Public License
Analyze This Comoe Networks Web GUI Proprietary

Operating system support

The utilities can run on these operating systems.

Client Microsoft Windows OS X Linux BSDs Solaris Other
Cain and Abel Yes No No No No No
Capsa Free Edition Yes No No No No No
Carnivore Yes No No No No No
Clarified Analyzer Yes Yes Yes No No ?
Clusterpoint Network Traffic
Surveillance System
Yes Yes Yes Yes No Any virtual-machine compatible OS
CommView Yes No No No No No
dSniff ? Yes Yes Yes Yes ?
EtherApe No Yes Yes Yes Yes ?
Ettercap Yes Yes Yes Yes Yes ?
justniffer No Yes Yes Yes Yes ?
Kismet Yes Yes Yes Yes ? ?
LANMeter No No No No No Fluke proprietary hardware
netsniff-ng No No Yes No No No
ngrep Yes Yes Yes Yes Yes AIX, BeOS, HP-UX, IRIX, Tru64 UNIX
Microsoft Network Monitor Yes No No No No No
Observer Yes No No No No No
OmniPeek (formerly AiroPeek, EtherPeek) Yes No No No No No
SteelCentral Transaction Analyzer Yes Version 3.5 capture agents on PowerPC only GUI, plus version 3.5 capture agents No Version 3.5 capture agents on SPARC only Version 3.5 capture agents on AIX and PA-RISC HP-UX only
snoop No No No No Yes No
tcpdump Yes (WinDump) Yes Yes Yes Yes AIX, HP-UX, IRIX, Tru64 UNIX
Wireshark (formerly Ethereal) Yes Yes Yes Yes Yes AIX, HP-UX, IRIX, Tru64 UNIX
Xplico No No Yes No No No

References

  1. "CHANGES". www.monkey.org.
  2. "EtherApe, a graphical network monitor". etherape.sourceforge.net. Retrieved 2015-12-11.
  3. "Downloads « Ettercap". ettercap.github.io. Retrieved 2015-12-11.
  4. "justniffer - Browse /justniffer at SourceForge.net". sourceforge.net. Retrieved 2015-12-11.
  5. "Kismet". www.kismetwireless.net. Retrieved 2015-12-11.
  6. tcpdump. "Tcpdump/Libpcap public repository". www.tcpdump.org. Retrieved 2015-12-11.
  7. http://www.xplico.org/archives/1457
This article is issued from Wikipedia - version of the Wednesday, January 20, 2016. The text is available under the Creative Commons Attribution/Share Alike but additional terms may apply for the media files.