OmniPeek
Encyclopedia
OmniPeek is a packet analyzer software tool from WildPackets Inc.. It is used for network troubleshooting and protocol analysis. It supports a plugin API.

History

WildPackets, Inc., was founded in 1990 by Mahboud Zabetian and Tim McCreery. The first product by WildPackets was written for the Mac, and called EtherPeek. It was a protocol analyzer for ethernet networks. It was later ported to Windows, which was released in 1997. In 2001, AiroPeek was released, which added support for 802.11 wireless networks. In 2003, the OmniEngine Distributed Capture Engine was released as software, and as a hardware network recorder appliance.

On the morning of July 15, 2002, the WildPackets' building in Walnut Creek California completely burnt to the ground. However, the company survived the fire.

Acquisitions

WildPackets acquired Net3 Group in November 2000. Their product, NetSense, an expert system for network troubleshooting, was converted into a plug-in and integrated into a new version of the product called EtherPeekNX.

WildPackets acquired Optimized Engineering Corporation in 2001. Optimized network analysis training courses and instructors were added to WildPackets services.

Extensibility

OmniPeek has API's on the front-end for automation, API's on the back-end for analysis, as well as other mechanisms to extend and enhance the program.

Plug-ins: There are over 40 different plug-in's available for the OmniPeek Platform. These plug-ins range from simple logging extensions to full-blown applications that are hosted by OmniPeek.

Remote Adapters: Adapters provide a means to capture packets and stats from various sources. Currently, there are remote adapters to capture from RMON, NetFlow, SFlow, Cisco AP's, Aruba AP's, and linux boxes. Adapters are also available to aggregate packets from multiple network segments and wireless channels at the same time.

Decoders: The most notable of these are the protospecs and decoder files, which are interpreted text files that can be extended by the user to enhance the display and analysis of existing protocols, and add knowledge of completely new protocols, without releasing new versions of the application.

Plugin Wizards: The Plugin Wizards for both the OmniPeek Console and the OmniEngine are Microsoft Visual Studio Project Templates that generate working plug-ins. When the wizard is run, a dialog appears providing options for different types of functionality that sample code will be generated for. When the wizard is complete, the user is left with a working plugin with entry points for adding application logic. These plug-in wizards make it easy and quick to develop extensions to OmniPeek.

MyPeek: The MyPeek Community Portal is a website dedicated to the extension of OmniPeek. It provides plug-in's, scripts, adapters, tools, and various levels of support for the different plug-ins posted there, and expertise for those interested in extending OmniPeek themselves.

PlaceMap: is a freely available standalone Google Maps
Google Maps
Google Maps is a web mapping service application and technology provided by Google, free , that powers many map-based services, including the Google Maps website, Google Ride Finder, Google Transit, and maps embedded on third-party websites via the Google Maps API...

 Packet sniffer
Packet sniffer
A packet analyzer is a computer program or a piece of computer hardware that can intercept and log traffic passing over a digital network or part of a network...

 application for Windows that captures network traffic and maps nodes to the Google Map. PlaceMap is a notable example of extensibility in that it uses exactly the same Google Map plugin that is also available for the OmniPeek, and is uses the peek driver API to capture packets.

Example Plugins

  • Google Map Plugin - Map nodes to a Google Map
    Google Maps
    Google Maps is a web mapping service application and technology provided by Google, free , that powers many map-based services, including the Google Maps website, Google Ride Finder, Google Transit, and maps embedded on third-party websites via the Google Maps API...

  • SQLFilter
    SQLFilter
    is a plugin for OmniPeek that indexes packets and trace files into an SQLite database. The packets can then be searched using SQL queries. The matching packets are loaded directly into OmniPeek and analyzed...

     Plugin - Save and query packets from a database
  • PeekPlayer Plugin - Send packet an adapter or a capture window
  • PowerBar Plugin - Write scripts that process packets
  • Decoder Plugin - Decode packets
  • WatchMe Plugin - Display web sites in real-time from URL's
  • Browser Plugin - Construct and display web pages from packets
  • IM Plugin - Display instant message screen names and chat
  • WebStats Plugin - Collect and report web statistics
  • Remote TCPDump Adapter Plugin - stream packets from any machine with SSH
    Secure Shell
    Secure Shell is a network protocol for secure data communication, remote shell services or command execution and other secure network services between two networked computers that it connects via a secure channel over an insecure network: a server and a client...

     and tcpdump
    Tcpdump
    tcpdump is a common packet analyzer that runs under the command line. It allows the user to intercept and display TCP/IP and other packets being transmitted or received over a network to which the computer is attached...

  • Cisco
    Cisco Systems
    Cisco Systems, Inc. is an American multinational corporation headquartered in San Jose, California, United States, that designs and sells consumer electronics, networking, voice, and communications technology and services. Cisco has more than 70,000 employees and annual revenue of US$...

    Remote Adapter Plugin - stream packets from Cisco Access Points
  • Aruba Remote Adapter Plugin - stream packets from Aruba Networks Air Monitors

External links

The source of this article is wikipedia, the free encyclopedia.  The text of this article is licensed under the GFDL.
 
x
OK