摘要
讨论在共享式局域网环境下,采用WinSock中的原始套接字将网卡的接收模式设置成混杂模式,从而将所有流经它的数据包截获,而不理会数据包包头中目的地址的内容,再根据事先定义的规则对包的首部进行识别、分析,来实现数据包的截获和分析。
Discusses under the share type LAN environment, adopts an original set within WinSock to connect a word to become the mode constitution of the receive of net card congestion mode, intercept and seize all data packages which flow through it, again according to in advance define of the rules carry on identify to the heads department for wrap, analysis, carry out a data packages to wrap of intercept and seize with analysis.
出处
《现代计算机》
2009年第4期94-96,共3页
Modern Computer