Wilders Security Forums  

Go Back   Wilders Security Forums > Official Colasoft Support Forum > Capsa Network Analyzer
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old November 30th, 2010, 01:51 PM
sonofsade sonofsade is offline
Infrequent Poster
 
Join Date: Nov 2010
Posts: 3
Default ARP Poisoning

On a switched network in my business. My office is too far from the network hub.

After doing an ARP poisoning test with Cain and Abel, capsa is monitoring most things nicely, http etc.

However, after following instructions for e-mail monitoring, Capsa is only logging my own smtp and pop3.It is not picking up other e-mails on the network.

Is there a reason for this?

Best regards,
William
  #2  
Old November 30th, 2010, 01:56 PM
sonofsade sonofsade is offline
Infrequent Poster
 
Join Date: Nov 2010
Posts: 3
Default Re: ARP Poisoning

I am running Capsa concurrently with C&A as a sniffer. Is there a problem with this for picking up packets?
  #3  
Old November 30th, 2010, 09:36 PM
brian_mi brian_mi is offline
Infrequent Poster
 
Join Date: Feb 2010
Posts: 12
Default Re: ARP Poisoning

Hi, sonofsade,

Did you set up SPAN (or port mirroring) on your switch?
  #4  
Old December 1st, 2010, 03:08 AM
sonofsade sonofsade is offline
Infrequent Poster
 
Join Date: Nov 2010
Posts: 3
Default Re: ARP Poisoning

No I don't know how to do this. Usually with ARP poisoning I am able to use a sniffer to inspect all traffic redirected from the target machine via my machine. I don't want my IT guyto know that I occasionally monitor my staff.

Does Capsa work differently to programs such as Give Me Too which worked perfectly under these conditions?
  #5  
Old December 20th, 2010, 09:19 PM
Colasoft Support's Avatar
Colasoft Support Colasoft Support is offline
Colasoft Moderator
 
Join Date: Dec 2007
Posts: 218
Default Re: ARP Poisoning

Hi sonofsade,

Thanks for your interests in Capsa.

You could go through the Packet tab to check whether any smtp and pop3 packets are captured. Those emails transmitted with SSL connections will not be logged.

Thanks.
__________________
Colasoft LLC
Official Website: http://www.colasoft.com
Contact Support: http://www.colasoft.com/support/contact/index.php
Follow us on twitter: colasoft
 

Wilders Security Forums > Official Colasoft Support Forum > Capsa Network Analyzer « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 07:10 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums