Snort mailing list archives

Re: HTTP Packet Capture


From: Mark Nipper <nipsy () tamu edu>
Date: Wed, 29 Oct 2003 11:41:53 -0600

On 29 Oct 2003, Jim VanEtten wrote:
Has anyone heard of a tool that uses Snort to capture http traffic to
a certain site and give the capabilities to view step by step and page
by page what the users are doing.

For example if my kids are posting to a web based chat or newsgroup can
I keep a log of their interaction and play it back later.

Hope my question makes sense, any help would be appreciated. If there is
no product I may want to start developing one but I don't want to
reinvent the wheel.

Something OpenSource and customizable would be ideal.

        It might be easier to use a transparent web proxy like
Squid or some such to collect this data.  Or you could use
tcpdump port 80 to collect all the HTTP traffic going across a
transparent bridge or the like.  As far as an actual pretty
display of all of this information, I am not immediately aware.
That doesn't mean it doesn't exist.

        The real reason I'm responding, and I will be the first
to say this is probably not the place to discuss moral decisions
such as this, is to question why you want to go to this length to
spy on your kids?  There is a point when they will look at
pornography and do drugs and you won't have any say so in the
matter.  It seems like all you can do is broach the subject with
them before they are exposed to it and try to explain things in
as clear of a manner as possible and give them the options to do
what they want to do, since they always will do just that!  :)

-- 
Mark Nipper                                                e-contacts:
Computing and Information Services                      nipsy () tamu edu
Texas A&M University                        http://ops.tamu.edu/nipsy/
College Station, TX 77843-3142     AIM/Yahoo: texasnipsy ICQ: 66971617
(979)575-3193                                      MSN: nipsy () tamu edu

-----BEGIN GEEK CODE BLOCK-----
GG/IT d- s++:+ a- C++$ UBL+++$ P--->+++ L+++$ E---
W++ N+ o K++ w(---) O++ M V(--) PS+++(+) PE(--) Y+
PGP++(+) t 5 X R tv b+++ DI+(++) D+ G e h r++ y+(**)
------END GEEK CODE BLOCK------

---begin random quote of the moment---
Two roads diverged in a yellow wood,
And sorry I could not travel both
And be one traveler, long I stood
And looked down one as far as I could
To where it bent in the undergrowth;

Then took the other, as just as fair,
And having perhaps the better claim,
Because it was grassy and wanted wear;
Though as for that the passing there
Had worn them really about the same,

And both that morning equally lay
In leaves no step had trodden black.
Oh, I kept the first for another day!
Yet knowing how way leads on to way,
I doubted if I should ever come back.

I shall be telling this with a sigh
Somewhere ages and ages hence:
Two roads diverged in a wood, and I--
I took the one less traveled by,
And that has made all the difference

 -- Robert Frost, _The Poetry of Robert Frost_, 1916
----end random quote of the moment----


-------------------------------------------------------
This SF.net email is sponsored by: SF.net Giveback Program.
Does SourceForge.net help you be more productive?  Does it
help you create better code?   SHARE THE LOVE, and help us help
YOU!  Click Here: http://sourceforge.net/donate/
_______________________________________________
Snort-users mailing list
Snort-users () lists sourceforge net
Go to this URL to change user options or unsubscribe:
https://lists.sourceforge.net/lists/listinfo/snort-users
Snort-users list archive:
http://www.geocrawler.com/redir-sf.php3?list=snort-users


Current thread: