slackbuilds_ponce/network/dnstop
2010-05-12 17:43:10 +02:00
..
dnstop.info network/dnstop: Updated for version 20080502 2010-05-12 17:43:10 +02:00
dnstop.SlackBuild network/dnstop: Updated for version 20080502 2010-05-12 17:43:10 +02:00
README network/dnstop: Added to 12.0 repository 2010-05-11 20:01:31 +02:00
slack-desc network/dnstop: Added to 12.0 repository 2010-05-11 20:01:31 +02:00

dnstop is a libpcap  application (ala tcpdump) that displays various tables of DNS traffic on your network. Currently dnstop displays tables of:

    * Source IP addresses
    * Destination IP addresses
    * Query types
    * Response codes
    * Opcodes
    * Top level domains
    * Second level domains
    * Third level domains
    * etc...

dnstop supports both IPv4 and IPv6 addresses.

To help find especially undesirable DNS queries, dnstop provides a number of filters. The filters tell dnstop to display only the following types of queries:

    * For unknown/invalid TLDs
    * A queries where the query name is already an IP address
    * PTR queries for RFC1918 address space 

dnstop can either read packets from the live capture device, or from a tcpdump savefile.

--
Unless modified, this script compiles with PPP frame support.

Homepage: http://dns.measurement-factory.com/tools/dnstop/