On Thursday, March 13, 2003, at 01:46 AM, Jacek Prucia wrote:
* Write robust tool (using tethereal perhaps) to take network dumps
and convert them to flood's XML format.
Status: Justin volunteers. Aaron had a script somewhere that is
a start.
Wouldn't it be better, if we use proxy instead of all-purpose network
software? I was thinking about mod_proxy_flood.so with some function attached
to request forwarding and a simple response handler which could allow users
to:
1. enable/disable flood proxy 2. edit gathered urls (only delete for now, later full edit) 3. dump flood file
Not a bad idea. things like tethereal and tcptrace are definitately like you say all-purpose, but for just collecting URLs and timestamps, that's sounds like a good idea to me.
-aaron
