Looking for a way to either listen or capture outgoing data traffic – Digitalmunition




Home Forums Looking for a way to either listen or capture outgoing data traffic

This topic contains 1 reply, has 2 voices, and was last updated by  iCkerous 1 month, 1 week ago.

  • Author
    Posts
  • #255921

    anonymous
    Participant

    I need to analyse a few services and their outgoing requests. Now the clients may be any device so this cannot be done on the client, it has to be done in the network. The requests are typically rest services, but may also include other types of services.

    In the example there is a client sending some data to “a service” located at [aservice.test.com](https://aservice.test.com), I can easily take control over the local requests for [test.com](https://test.com) through the local dns and redirect traffic to that address wherever I want. Ideally this would be some sort of tunnel that also could capture that traffic and pass the data to the real service.

    Is there a best practice for this, or anything that would suit my scenario.

    ​

    https://preview.redd.it/x0d4cc3m0b151.png?width=742&format=png&auto=webp&s=5caa174e6f439b4599bd56fa1f06958144fbed48

  • #255922

    iCkerous

    Squid proxy can do this. You’ll have to configure all devices to route traffic through the proxy

  • #255923

    Vlape

    You could use a tap on the switch to capture the traffic on the wire.

You must be logged in to reply to this topic.