|
|
|
|
|
|
|
|
|
|
|
|
|
3206, 8/161 |
|
¹Ùº¼ÀÌ | |||||||
À©µµ¿ì ·Î¿ì ¼ÒÄÏ °ü·Ã Áú¹®ÀÔ´Ï´Ù.. | |||||||
http://www.hackerschool.org/HS_Boards/zboard.php?id=QNA_programming&no=2455 [º¹»ç]
Hit : 5977 Date : 2010/05/21 09:52
|
|||||||
gladia | ¿©±â´Ù ¹°¾îºÃ´ø ¸ðµç Áú¹®µéÀÌ ¾ÃÇû´Ù±æ·¡... °Ë»öÁ»Çغôµ¥¿ä, Raw Sockets and Windows First of all, it must be understood very clearly that raw sockets is not a feature of the network API (although it must be present there as an option) but of the OS protocol stack. To implement raw sockets, all we have to do is to inform the OS that the packet buffer we are providing will have the header and so the OS should transmit it as is without "adding any header"; that's all, nothing more to do. The Unix operating system has raw socket support since ancient times. But the problem is with Windows. None of Windows 95, 98, 98SE supported raw sockets. Raw sockets became available on Windows from Windows 2000; Windows XP continued this. But suddenly, raw socket support was removed from Windows XP through a patch in SP2. Vista probably doesn't have it. Windows 95, 98, 98SE do not support raw sockets, but this doesn't end the story. If you want the facility, then the solution is to use a third party packet driver like Winpcap. Such packet drivers will do your task irrespective of what the OS likes and dislikes. Windows XP and XP SP1 have full raw socket support and so life is easy. So if you want to do raw socketing on Windows, then either use Winpcap or don't feel desperate to install SP2, or otherwise use Windows 2003 which, as per my knowledge, has raw socket support. So let's brief up. 1. Windows 95, 98, 98SE, NT4.0 -- Only raw ICMP and IGMP with restricted features. 2. Windows 2000, XP, XP SP1, 2003 -- Full raw socket support for both receiving and sending purposes. 3. Windows XP SP2 -- Only raw ICMP, IGMP, and UDP with proper source address (IP spoofing restricted) can be sent. But, full raw sockets can be received, which means you can sniff all incoming data and read their headers. À©µµ¿ìÀÚü¿¡¼ RAW Socket À» ¼Æ÷Æ®ÇØÁÖÁö ¾Ê±â¶§¹®¿¡ Winpcap À̶ó´Â º°µµ¿¡ µå¶óÀ̹ö? ÇÁ·Î±×·¥? À» »ç¿ëÇؼ º¸³¾¼öÀִٴ°ų»¿ä. °á±¹ À©µµ¿ì´Â ¸øÇÏ°ÔÇسùÁö¸¸ Æí¹ýÀ¸·Î WINPCAP À» ¾²´Â°Å°°³»¿ä. |
2010/05/22 | |
¹Ùº¼ÀÌ | WinPcapÀº ¹Þ´Â°Í¸¸ °¡´ÉÇÏ´Ù°í µé¾ú´Âµ¥¿ä.. | 2010/05/22 | |
|
|