tools:network_tools
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
tools:network_tools [2025/06/06 07:47] – aperez | tools:network_tools [2025/08/29 12:05] (current) – aperez | ||
---|---|---|---|
Line 1: | Line 1: | ||
+ | ---- | ||
+ | ---- | ||
+ | |||
+ | ====== Royal TS ====== | ||
+ | |||
+ | |||
+ | * Powerful Connection Management, compatible with a variety of connection types Using RDP, VNC, SSH based terminals, S/FTP or web-based interfaces? | ||
+ | * Built-in credential management. Safe team-sharing features. | ||
+ | * Command Tasks and Key Sequence Tasks make it easy to quickly automate repetitive tasks. | ||
+ | * SSH-based tunneling (Secure Gateway) support is tightly integrated in Royal TS. | ||
+ | * Dynamic Folders allow you to dynamically import data from external sources. | ||
+ | |||
+ | **[[https:// | ||
+ | |||
+ | |||
---- | ---- | ||
---- | ---- | ||
Line 726: | Line 741: | ||
**PingInfoView v3.20 - Ping monitor utility** | **PingInfoView v3.20 - Ping monitor utility** | ||
+ | |||
+ | |||
+ | **[[https:// | ||
+ | |||
Copyright (c) 2008 - 2025 Nir Sofer | Copyright (c) 2008 - 2025 Nir Sofer | ||
Line 944: | Line 963: | ||
---- | ---- | ||
+ | |||
+ | **[[https:// | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ====== Technitium Overview ====== | ||
+ | |||
+ | **Technitium** is a software platform focused on privacy, network control, and scalability. | ||
+ | Founded in 2003 by university students, it has become a well-known provider of networking and cybersecurity tools. | ||
+ | Official website: [[https:// | ||
+ | |||
+ | ===== Main Tools ===== | ||
+ | |||
+ | ==== Technitium Mesh ==== | ||
+ | * Open-source, | ||
+ | * Provides strong end-to-end encryption using algorithms such as DHE-2048, ECDHE-256, RSA-2048, and AES-256. | ||
+ | * Requires Windows. | ||
+ | |||
+ | ==== Technitium MAC Address Changer (TMAC) ==== | ||
+ | * Free utility to change or spoof MAC addresses on Ethernet and Wi-Fi adapters in Windows. | ||
+ | * Offers complete adapter configuration and allows presets for quick switching. | ||
+ | * Supports IPv6. | ||
+ | |||
+ | ==== Technitium DNS Server ==== | ||
+ | * Open-source authoritative and recursive DNS server with focus on privacy and security. | ||
+ | * Available for Windows, Linux, macOS, and Raspberry Pi. | ||
+ | * Key Features: | ||
+ | * DNS-level blocking (ads, malware, tracking). | ||
+ | * Detailed query logging and statistics. | ||
+ | * High performance (100,000+ requests/ | ||
+ | * DNSSEC support, advanced caching, authoritative zones. | ||
+ | * Built-in DHCP server, DNS-over-TLS, | ||
+ | * REST API and web-based admin console. | ||
+ | |||
+ | ==== DNS Client Service ==== | ||
+ | * Online DNS query tool to perform lookups using any server, including root servers. | ||
+ | * Available directly on their website. | ||
+ | |||
+ | ==== Blog and Community Support ==== | ||
+ | * Frequent updates on new releases and features. | ||
+ | * Blog provides guides and details about features (e.g., Catalog Zones for clustering). | ||
+ | * Community support available via Reddit and email. | ||
+ | * [[https:// | ||
+ | |||
+ | ===== Useful Links ===== | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | |||
+ | |||
+ | **[[https:// | ||
+ | |||
+ | |||
+ | {{ : | ||
+ | |||
+ | {{ : | ||
+ | |||
+ | {{ : | ||
+ | |||
+ | |||
+ | ---- | ||
+ | |||
+ | ====== Security Onion Solutions (SOS) Overview ====== | ||
+ | |||
+ | **Security Onion Solutions (SOS)** is a free and open platform for network security monitoring, intrusion detection, and log management. | ||
+ | It is widely used to build Security Operations Centers (SOC) and provides integrated tools for monitoring, hunting, and incident response. | ||
+ | Official website: [[https:// | ||
+ | |||
+ | ===== Key Features ===== | ||
+ | |||
+ | * **Alerts** – Correlate events from IDS/IPS engines (e.g., Suricata, Snort). | ||
+ | * **Hunt** – Threat hunting interface to query and analyze logs and events. | ||
+ | * **Detections** – Rules-based and anomaly-based detection. | ||
+ | * **PCAP** – Packet capture and full session reconstruction. | ||
+ | * Pull packet captures from network events and analyze them using SOC interface, CyberChef, or external tools (e.g., Wireshark). | ||
+ | * **Cases** – Integrated case management for incident response. | ||
+ | * **Dashboards** – Visualization of alerts, logs, and KPIs. | ||
+ | * **Analyzers** – Built-in and external tools to parse and analyze captured data. | ||
+ | |||
+ | ===== Data Types ===== | ||
+ | * **Agent** – Endpoint agents to collect telemetry. | ||
+ | * **Alert** – Event-based alerts from detection engines. | ||
+ | * **Asset** – Network and host assets tracked within the SOC. | ||
+ | |||
+ | ===== Integrated Tools ===== | ||
+ | * Suricata IDS/IPS | ||
+ | * Zeek network security monitor | ||
+ | * Wazuh for host monitoring | ||
+ | * TheHive case management | ||
+ | * Kibana dashboards | ||
+ | * CyberChef for data parsing and decoding | ||
+ | |||
+ | ===== Benefits ===== | ||
+ | * Free and open-source (with professional support available). | ||
+ | * All-in-one SOC in a box (network + host + log analysis). | ||
+ | * Scalable: from single node deployments to enterprise SOC clusters. | ||
+ | * Strong community support and active development. | ||
+ | |||
+ | ===== Useful Links ===== | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | |||
+ | |||
+ | |||
+ | |||
+ | |||
+ | {{ : | ||
+ | {{ : | ||
+ | {{ : | ||
+ | |||
+ | ---- | ||
+ | |||
+ | |||
+ | ====== Prometheus Overview ====== | ||
+ | |||
+ | **Prometheus** is an open-source monitoring and alerting toolkit designed for reliability and scalability. | ||
+ | It collects, stores, and queries time-series data, and is widely used to monitor applications, | ||
+ | Official website: [[https:// | ||
+ | |||
+ | ===== Key Features ===== | ||
+ | |||
+ | * **Dimensional Data Model** | ||
+ | * Time series are identified by a metric name and key-value pairs (labels). | ||
+ | * Provides flexibility to organize and query metrics. | ||
+ | |||
+ | * **Powerful Queries** | ||
+ | * PromQL (Prometheus Query Language) allows filtering, aggregation, | ||
+ | * Enables advanced dashboards, visualizations, | ||
+ | |||
+ | * **Precise Alerting** | ||
+ | * Rules are defined in PromQL. | ||
+ | * Alerts leverage the dimensional model for flexible conditions. | ||
+ | * Integrated with Alertmanager for routing, notifications, | ||
+ | |||
+ | * **Simple Operation** | ||
+ | * Independent server, relies only on local storage. | ||
+ | * Written in Go, distributed as single static binaries. | ||
+ | * Easy to deploy in diverse environments. | ||
+ | |||
+ | * **Instrumentation Libraries** | ||
+ | * Wide set of official and community libraries. | ||
+ | * Covers most major languages (Go, Java, Python, Ruby, etc.). | ||
+ | * Allows developers to expose custom metrics. | ||
+ | |||
+ | * **Ubiquitous Integrations** | ||
+ | * Hundreds of exporters and integrations available. | ||
+ | * Common use: Node Exporter, cAdvisor, Blackbox Exporter, etc. | ||
+ | * Easy to extract metrics from existing systems. | ||
+ | |||
+ | ===== Typical Use Cases ===== | ||
+ | * Monitoring microservices and containerized applications (Kubernetes, | ||
+ | * Collecting system-level metrics (CPU, memory, disk, network). | ||
+ | * Application-specific instrumentation (business logic, API metrics). | ||
+ | * Centralized alerting with Alertmanager. | ||
+ | * Integration with Grafana for visualization. | ||
+ | |||
+ | ===== Benefits ===== | ||
+ | * Open source and widely adopted in the industry. | ||
+ | * Strong ecosystem (exporters, integrations, | ||
+ | * Highly flexible query model and alerting system. | ||
+ | * Scales from single servers to large distributed clusters. | ||
+ | |||
+ | ===== Useful Links ===== | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | |||
+ | |||
+ | {{ : | ||
+ | |||
+ | |||
+ | ---- | ||
+ | |||
tools/network_tools.1749214027.txt.gz · Last modified: 2025/06/06 07:47 by aperez