How do you guys suggest setting filters to catch the following: outbound TFTP requests TCP port 135 requests ( RPC )
I want to set this sniffer on our core switch w/ port monitor and catch all RPC worm traffic if it happens. Ethereal is running on windows sp4. Thanks guys Joshua Perrymon Sr. Network Security Consultant BE&K Information Security Dept. 2000 International Park Drive Birmingham, Al 35243 Voice ( 205 ) 972-6745
