Wireshark mailing list archives

Re: One NIC on public side


From: "mike () grounded net" <mike () grounded net>
Date: Thu, 13 May 2010 11:09:04 -0500

On Thu, 13 May 2010 07:55:40 -0700, Gianluca Varenni wrote:
 On NIC1 you can totally disable the TCP/IP stack. Go to the properties of
 that network connection, in the list of services/protocols bound to that
 NIC, uncheck TCP/IP.

Ok, I've unchecked TCP/IP but still have others such as MS Client, QoS and of course, the network monitors such as 
VMON1 and Network Monitor Driver. 

I was under the impression that without a viable IP on the NIC, it could never be accessed from remote but could be 
used in promiscuous mode to read traffic.

So, disabling some of these protocols will allow me to safely connect it on the public side again then?
 
 This will still allow you to capture, but there won't be any protocol bound
 to that NIC apart from the WinPcap driver.

One last thing, is the WinPcap driver something I should see in the list of protocols?

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe


Current thread: