Microsoft Network Monitor

Microsoft Network Monitor
Network Monitor
Developer(s) Microsoft
Stable release 3.4 / June 24, 2010
Operating system Windows
Type Packet analyzer
Website http://blogs.technet.com/netmon

Microsoft Network Monitor is a packet analyzer. It enables capturing, viewing, and analyzing network data and deciphering network protocols. It can be used to troubleshoot network problems and applications on the network. Microsoft Network Monitor 1.0 (codenamed Bloodhound) was originally designed and developed by Raymond Patch, a transport protocol and network adapter device driver engineer on the Microsoft LAN Manager development team.

History

The LAN Manager development team had one shared hardware-based analyzer at the time. Netmon was conceived when the hardware analyzer was taken during a test to reproduce a networking bug, and the first Windows prototype was coded over the Christmas holiday. The first 4 bytes of the Netmon capture file format were used to validate the file. The values were 'RTSS' for Ray, Tom, Steve, and Steve - the first four members of the team. The code was originally written for OS/2 and had no user interface; a symbol was placed in the device driver where the packet buffers were kept so received data could be dumped in hex from within the kernel debugger.

Netmon caused a bit of a stir for Microsoft IT since networks and e-mail were not encrypted at the time. Only a few software engineers had access to hardware analyzers due to their cost, but with Netmon many engineers around the company had access to network traffic for free. At the request of Microsoft IT, two simple identification features were added - a non-cryptographic password and an identification protocol named the Bloodhound-Oriented Network Entity (BONE) (created and named by Raymond Patch as a play on the codename Bloodhound).

Network Monitor 3 is a complete overhaul of the earlier Network Monitor 2.x version. Originally versions of Network Monitor were only available through other Microsoft products, such as Systems Management Server (SMS). But now the fully featured product with public parsers is available as a free download.

Features

Some key features of Network Monitor 3.4 include the following:

  • Process tracking
  • Grouping by network conversation
  • Support for over 300 public and Microsoft proprietary protocols
  • Simultaneous capture sessions
  • Wireless Monitor Mode with supported wireless NICs
  • Real-time capture and display of frames
  • Reassembly of fragmented data
  • Sniffing of promiscuous mode traffic
  • Can read libpcap capture files
  • API to access capture and parsing engine

External links


Wikimedia Foundation. 2010.

Игры ⚽ Поможем написать реферат

Look at other dictionaries:

  • Microsoft Network Monitor 3 — Infobox Software name = Network Monitor 3.2 caption = Network Monitor 3.1 developer = Microsoft latest release version = 3.2 latest release date = September 17, 2008 operating system = Windows genre = Packet sniffer website = http://blogs.technet …   Wikipedia

  • Network Monitor — Mode moniteur Pour les articles homonymes, voir Mode moniteur (homonymie). Le mode moniteur (aussi appelé Radio Frequency Monitoring, RF Monitor, rfmon, RFMON, Air Monitor, Network Monitor, NetMon, ou encore surveillance RF) permet à un… …   Wikipédia en Français

  • Network Monitor —    In Microsoft Windows NT Server, a graphical utility program used to monitor and troubleshoot networkrelated problems.    Network Monitor tracks information up to the network layer, filters packets according to the protocol or the source or the …   Dictionary of networking

  • Intellipool Network Monitor — Infobox Software name = Intellipool Network Monitor caption = developer = Intellipool AB latest release version = 3.4 latest release date = latest preview version = latest preview date = operating system = Cross platform platform = genre =… …   Wikipedia

  • IPHost Network Monitor — is a network monitoring tool for Microsoft Windows. This software can monitor availability and performance of mail servers, internet hosts, database servers, and other network resources. Any performance counters on Windows servers and… …   Wikipedia

  • Network monitoring — The term network monitoring describes the use of a system that constantly monitors a computer network for slow or failing components and that notifies the network administrator (via email, pager or other alarms) in case of outages. It is a subset …   Wikipedia

  • Network General Sniffer — Dieser Artikel oder Abschnitt bedarf einer Überarbeitung. Näheres ist auf der Diskussionsseite angegeben. Hilf mit, ihn zu verbessern, und entferne anschließend diese Markierung. Ein Sniffer (engl. „to sniff“ für riechen, schnüffeln) ist eine… …   Deutsch Wikipedia

  • Monitor mode — Monitor mode, or RFMON (Radio Frequency MONitor) mode, allows a computer with a wireless network interface controller (NIC) to monitor all traffic received from the wireless network. Unlike promiscuous mode, which is also used for packet sniffing …   Wikipedia

  • Microsoft SQL Server — Тип Реляционная СУБД Разработчик Sybase, Ashton Tate, Microsoft …   Википедия

  • Microsoft Advertising — Microsoft Corporation Lema Your potential. Our passion. ( Tu potencial. Nuestra pasión. )[1] …   Wikipedia Español

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”