We love Swiss Army knife-style tool kits, those suites of services and functions that are managed through a common interface. We reviewed an e-mail tool kit in this category a few weeks ago, and today we have a networking Swiss Army knife-style tool kit: NetScanTools Pro 10 from Northwest Performance Software.
NetScanTools Pro (NSTP) is remarkable. In one interface you get network setup and configuration exploration functions, security testing services, information-gathering tools, and network and service diagnostics. Northwest positions the software for general network diagnosis and exploration, as well as for forensic use.
The features of NSTP are divided into a Welcome section, which provides introductory help, bug reporting, Northwest contact information and the ability to check for a new version.
The next section leads you through a sequence of steps to gather information about a remote machine. The first step asks what kind of contact you want with the remote computer (no contact, some contact or maximum contact). The idea is that for certain types of analysis, such as tracking down a hacker, you might want to restrict which tools are used to those that don't connect directly to a target machine: This will avoid setting off alarms. If you are a little braver, you can opt for "minimal" testing that uses non-aggressive techniques, such as connecting to one or two ports to determine the existence of services or attempting to "fingerprint" the host's operating system.
The next step asks for basic information about the target system - the name, IP address, e-mail address or URL. The third step, research, runs the NSTP tools and creates a report that is opened as a Web page in your default Web browser.
A no-contact report simply lists the IP address associated with the target, the DNS servers responsible for the domain and DNS data, geolocation (IP to country mapping), the major spam real-time blacklists the target is on, and the Whois data for the domain.
With a most-contact version, not only do you get all the no-contact data, you also get a list of host names found within the domain, a traceroute to the target with geolocations for each hop and a list of open TCP ports.
There also is a fourth step in this section, which allows you to view or delete any of the past reports.
Partner Content
NetScout and analyst Jim Metzler have teamed to deliver a series of IT Briefs on Network and Application Performance Management leveraging research from NetScout's nGenius & Sniffer users.
www.netscout.com
Metzler on Service Delivery Management
Delivering IT business value by evolving our thinking from managing application performance to focusing on services.
Learn More
2009 Handbook of Application Delivery
Successful IT organizations must know how to make the right application delivery decisions in these tough economic times.
Download the Handbook
Metzler on the Modern IP Network
Discusses the growing emphasis on network management and the need to implement a holistic view of the end-to-end experience of the user.
Read the Brief