OK...so I'm a security analyst, not a network engineer. As such, all my understanding of how networks are set up is basically conceptual. That said, I have a few extra computers laying around, and decided to run a NIDS on my home network. The machine I plan to use as a sensor has two ethernet NICs and a wifi card. Basically, I want to plug the modem into one ethernet port, and the router into the other, and have the machine inspect the packets as they pass through...this should give me visibility on every packet that enters or leaves my network. Problem is, I have no idea how to configure this. I wish it was as easy as 'plug and play,' but clearly that isn't going to work. How do I set up the machine to take traffic coming from the modem on one ethernet card, and pass it along to the router on the other?
Let's see...my router, unfortunately, is not configurable for SPAN, so that won't work. I have a DIR-868L Wireless AC router, and the machine I want to use as a sensor is running Windows 8.1
What other information might anyone need in order to help me out with this?
Let's see...my router, unfortunately, is not configurable for SPAN, so that won't work. I have a DIR-868L Wireless AC router, and the machine I want to use as a sensor is running Windows 8.1
What other information might anyone need in order to help me out with this?