Please answer all parts for Upvote. 1. a) What is the function of Packet Sniffin
ID: 3903413 • Letter: P
Question
Please answer all parts for Upvote.
1. a) What is the function of Packet Sniffing or Packet Capture?
b) The second requirement to avoid any violation or privacy for employees is to 1) determine the ownership of computer technology resources, 2) to notify employees of any policies for the use of their personal computer and network devices when using the company's network. If an employee uses a personal device to access Google from a company's network can organization sniff TCP/IP packets?
c) Each TCP/IP packets has two major components: the packet header and the packet body. What type of data is store in a TCP/IP packet header?
d) What type of data is stored in a TCP/IP packet body?
e) Assume that a network forensic investigator collects TCP/IP packet bodies transmitted from outside the organization's network to into the organization's network from non-employees. Explain the reasons why a search warrant may or may not be required?
Explanation / Answer
function of packet sniffing -
packet sniffers work by capturing and logging system activity that they can 'see' by means of the wired or remote system interface that the parcel sniffing programming approaches on its host PC.
On a wired system, what can be caught relies upon the structure of the system. A packet sniffer may have the capacity to see movement on a whole system or just a specific portion of it, contingent upon how the system switches are designed, put, and so on. On remote systems, bundle sniffers can generally just catch one channel at any given moment except if the host PC has numerous remote interfaces that take into consideration multichannel catch.
Once the crude packet information is caught, the parcel sniffing programming must break down it and present it in intelligible frame with the goal that the individual utilizing the bundle sniffing programming can comprehend it.
type of data is store in a TCP/IP packet header
TCP/IP header consist of 20 bytes , it contains source TCP port number that is of 2 bytes
destination TCP port number that is of 2 bytes , Sequence number of 4 bytes , reversed data of 3 bits , acknowledge number 4 bytes , tcp data offset of 4 bits, control flags 9 bits, window size of 2 bytes, TCP checksum of 2 bytes, urgent pointer of 2 bytes
Related Questions
drjack9650@gmail.com
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.