OSI software support.
MECHANISM
This tool has been designed in such a way that code to
process different protocol suites may be easily added.
As such, OSITRACE also has the ability to trace the DOD
TCP protocols.
CAVEATS
None.
BUGS
Bug reports and questions should be addressed to: ie-
tools@gateway.mitre.org
Requests to join this mailing list: ie-tools-
request@gateway.mitre.org
Questions and suggestions can also be directed to: Greg
Hollingsworth, gregh@gateway.mitre.org
LIMITATIONS
None reported.
HARDWARE REQUIRED
No restriction.
SOFTWARE REQUIRED
SunOS 3.4, 3.5, or 4.0.X, or BSD UNIX-like network pro-
tocols with NETMON installed.
AVAILABILITY
OSITRACE is copyrighted by the MITRE-Washington Net-
working Center, but freely distributed "as is." It re-
quires retention of a copyright text in code derived
from it. The distribution is available by anonymous
FTP in pub/pdutrace.tar or pub/pdutrace.tar.Z from
aelred-3.ie.org.
Internet Tool Catalog OVERVIEW
NAME
OverVIEW
KEYWORDS
manager, status; IP; NMS, SNMP; DOS.
ABSTRACT
Network and internet monitor; Performance monitor;
Fully Graphic user interface; Event logging; TFTP boot
server
MECHANISM
OverVIEW uses SNMP to query routers, gateways and
hosts. Also supports SGMP, PING and is committed to
CMIP/CMOT. The SNMP queries allow dynamic determina-
tion of configuration and state. Sets of related
queries allows monitoring of congestion and faults.
The hardware and software are sold as an integrated
package.
CAVEATS
None.
BUGS
None known.
LIMITATIONS
256 nodes, 256 nets
HARDWARE REQUIRED
80286, 640K, EGA, mouse.
SOFTWARE REQUIRED
MS-DOS, OverVIEW, Network kernel, Mouse driver, SNMP
agents for monitored devices.
AVAILABILITY
Fully supported product of Proteon, Inc. For more
information, contact:
Proteon, Inc. Phone: (508) 898-2800
2 Technology Drive Fax: (508) 366-8901
Westborough, MA 01581 Telex: 928124
Internet Tool Catalog PING
NAME
ping
KEYWORDS
generator, status; IP; ping; DOS, UNIX, VMS; free.
ABSTRACT
Ping is perhaps the most basic tool for internet
management. It verifies that a remote IP implementa-
tion and the intervening networks and interfaces are
functional. It can be used to measure round trip
delay. Numerous versions of the ping program exist.
MECHANISM
Ping is based on the ICMP ECHO_REQUEST message.
CAVEATS
If run repeatedly, ping could generate high system
loads.
BUGS
None known.
LIMITATIONS
PC/TCP's ping is the only implementation known support
both loose and strict source routing. Though some ping
implementations support the ICMP "record route"
feature, the usefulness of this option for debugging
routes is limited by the fact that many gateways do not
correctly implement it.
HARDWARE REQUIRED
No restrictions.
SOFTWARE REQUIRED
None.
AVAILABILITY
Ping is widely included in TCP/IP distributions. Pub-
lic domain versions of ping are available via anonymous
FTP from uunet.uu.net, in directory bsd-
sources/src/etc, and from venera.isi.edu, in directory
pub.
Internet Tool Catalog PROCESS-TCPWARE-SNMP
NAME
SNMP agent
KEYWORDS
alarm, manager, status, traffic; IP; SNMP; VMS;.
ABSTRACT
The SNMP agent listens for and responds to network
management requests sent from SNMP-conforming network
management stations. The SNMP agent also sends SNMP
traps, under specific conditions, to identified trap
receivers. SNMP communities and generation of traps
are fully configurable. The SNMP agent supports all
MIB-II variables except the EGP group.
MECHANISM
Network management variables are made available for
inspection and/or alteration by means of the Simple
Network Management Protocol (SNMP).
CAVEATS
None.
BUGS
No known bugs.
LIMITATIONS
Does not yet provide the ability for sites to add
extra MIB definitions.
HARDWARE REQUIRED
Supported VAX processors.
SOFTWARE REQUIRED
VMS V4 or later
AVAILABILITY
The SNMP agent is included in TCPware for VMS, a
commercial product available under license from:
Process Software Corporation
959 Concord Street
Framingham, MA 01701
+1 800 722 7770, +1 508 879 6994 (voice)
+1 508 879-0042 (FAX) TELEX 517891
sales@process.com
Internet Tool Catalog PROXYD
NAME
proxyd -- SNMP proxy agent daemons from SNMP Research.
KEYWORDS
control, management, status;
bridge, Ethernet, IP, OSI, ring, star;
NMS, SNMP;
UNIX;
library, sourcelib.
ABSTRACT
SNMP proxy agents may be used to permit the monitoring
and controlling of network elements which are otherwise
not addressable using the SNMP management protocol
(e.g., a network bridge that implements a proprietary
management protocol). Similarly, SNMP proxy agents may
be used to protect SNMP agents from redundant network
management agents through the use of caches. Finally,
SNMP proxy agents may be used to implement elaborate
MIB access policies.
The proxy agent daemon:
- listens for SNMP queries and commands from logically
remote network management stations,
- translates and retransmits those as appropriate
network management queries or cache lookups,
- listens for and parses the responses,
- translates the responses into SNMP responses, and
- returns those responses as SNMP messages to the
network management station that originated the
transaction.
The proxy agent daemon also emits SNMP traps to
identified trap receivers. The proxy agent daemon is
designed to make the addition of additional vendor-
specific variables a straight-forward task. The proxy
application comes complete with source code including a
powerful set of portable libraries for generating and
parsing SNMP messages and a set of command line utilities.
MECHANISM
Network management variables are made available for
inspection and/or alteration by means of the Simple
Network Management Protocol (SNMP).
CAVEATS
None.
BUGS
None known.
LIMITATIONS
This application is a template for proxy application
writers.
Only a few of the many LanBridge 100 variables are
supported.
HARDWARE REQUIRED
System from Sun Microsystems, Incorporated.
SOFTWARE REQUIRED
Sun OS 3.5 or 4.x.
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
This is a commercial product available under license
from:
SNMP Research
3001 Kimberlin Heights Road
Knoxville, TN 37920-9716
Attn: John Southwood, Sales and Marketing
(615) 573-1434 (Voice) (615) 573-9197 (FAX)
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
users@seymour1.cs.utk.edu
Internet Tool Catalog PROXYD_SNMP_RESEARCH
NAME
proxyd -- SNMP proxy agent daemons from SNMP Research.
KEYWORDS
control, management, status;
bridge, Ethernet, IP, OSI, ring, star;
NMS, SNMP;
UNIX;
library, sourcelib.
ABSTRACT
SNMP proxy agents may be used to permit the monitoring
and controlling of network elements which are otherwise
not addressable using the SNMP management protocol
(e.g., a network bridge that implements a proprietary
management protocol). Similarly, SNMP proxy agents may
be used to protect SNMP agents from redundant network
management agents through the use of caches. Finally,
SNMP proxy agents may be used to implement elaborate
MIB access policies.
The proxy agent daemon:
- listens for SNMP queries and commands from logically
remote network management stations,
- translates and retransmits those as appropriate
network management queries or cache lookups,
- listens for and parses the responses,
- translates the responses into SNMP responses, and
- returns those responses as SNMP messages to the
network management station that originated the
transaction.
The proxy agent daemon also emits SNMP traps to
identified trap receivers. The proxy agent daemon is
designed to make the addition of additional vendor-
specific variables a straight-forward task. The proxy
application comes complete with source code including a
powerful set of portable libraries for generating and
parsing SNMP messages and a set of command line utilities.
MECHANISM
Network management variables are made available for
inspection and/or alteration by means of the Simple
Network Management Protocol (SNMP).
CAVEATS
None.
BUGS
None known.
LIMITATIONS
This application is a template for proxy application
writers.
Only a few of the many LanBridge 100 variables are
supported.
HARDWARE REQUIRED
System from Sun Microsystems, Incorporated.
SOFTWARE REQUIRED
Sun OS 3.5 or 4.x.
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
This is a commercial product available under license
from:
SNMP Research
3001 Kimberlin Heights Road
Knoxville, TN 37920-9716
Attn: John Southwood, Sales and Marketing
(615) 573-1434 (Voice) (615) 573-9197 (FAX)
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
users@seymour1.cs.utk.edu
Internet Tool Catalog QUERY
NAME
query, ripquery
KEYWORDS
routing; IP; spoof; UNIX; free.
ABSTRACT
Query allows remote viewing of a gateway's routing
tables.
MECHANISM
Query formats and sends a RIP request or POLL command
to a destination gateway.
CAVEATS
Query is intended to be used a a tool for debugging
gateways, not for network management. SNMP is the pre-
ferred protocol for network management.
BUGS
None known.
LIMITATIONS
The polled gateway must run RIP.
HARDWARE REQUIRED
No restriction.
SOFTWARE REQUIRED
4.3BSD UNIX or related OS.
AVAILABILITY
Available with routed and gated distributions.
Routed may be obtained via anonymous FTP from
uunet.uu.net, in file bsd-
sources/src/network/routed.tar.Z.
Gated may be obtained via anonymous FTP from
devvax.tn.cornell.edu. Distribution files are in
directory pub/gated.
Internet Tool Catalog SAS-CPE
NAME
SAS/CPE(tm) for Open Systems Software
KEYWORDS
manager, status;
bridge, ethernet, FDDI, IP, OSI, NFS;
X;
DOS, HP, UNIX;
library.
ABSTRACT
SAS/CPE(tm) for Open Systems software is an integrated system designed
to facilitate the analysis and presentation of computer performance
and resource utilization data. SAS/CPE software features include:
. Processing of raw computer and network performance data into
detail-level SAS data sets.
. Conversion and validation of logged data values to forms
more useful for display and analysis (e.g., I/O counts
are converted to I/O rates per second).
. Numerous sample reports on performance data processed by
SAS/CPE software.
. Reduction of logged performance data into daily, weekly,
monthly or yearly summarized values.
. Menu-driven interface to the creation and management of multiple
performance data bases.
. Menu-driven report designing interface that allows users with no
programming knowledge to create and manage custom reports from
their performance data base. No SAS coding is needed for this
interface.
MECHANISM
SAS/CPE for Open Systems processes and reports data
from SNMP and other proprietary monitoring protocols,
as well as du and accounting.
CAVEATS
The product is currently in alpha testing.
BUGS
None known.
LIMITATIONS
None reported.
HARDWARE REQUIRED
HP, SUN or IBM Workstation
SOFTWARE REQUIRED
The SAS(r) System Base Software, SAS/GRAPH Software and
SAS/CPE for Open System Software
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
SAS/CPE for Open Systems Software is available from:
SAS Institute Inc.
SAS Campus Drive
Cary, NC 27513
Phone 919-677-8000
FAX 919-677-8123
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
Send email to snodjs@mvs.sas.com.
Internet Tool Catalog SNIFFER
NAME
Sniffer
KEYWORDS
analyzer, generator, traffic; DECnet, ethernet, IP,
NFS, OSI, ring, SMTP, star; eavesdrop; standalone.
ABSTRACT
The Network General Sniffer is a protocol analyzer for
performing LAN diagnostics, monitoring, traffic genera-
tion, and troubleshooting. The Sniffer protocol
analyzer has the capability of capturing every packet
on a network and of decoding all seven layers of the
OSI protocol model. Capture frame selection is based
on several different filters: protocol content at lower
levels; node addresses; pattern matching (up to 8
logically-related patterns of 32 bytes each); and des-
tination class. Users may extend the protocol
interpretation capability of the Sniffer by writing
their own customized protocol interpreters and linking
them to the Sniffer software.
The Sniffer displays network traffic information and
performance statistics in real time, in user-selectable
formats. Numeric station addresses are translated to
symbolic names or manufacturer ID names. Network
activities measured include frames accepted, Kbytes
accepted, and buffer use. Each network version has
additional counters for activities specific to that
network. Network activity is expressed as
frames/second, Kbytes/second, or per cent of network
bandwidth utilization.
Data collection by the Sniffer may be output to printer
or stored to disk in either print-file or spread-sheet
format.
Protocol suites understood by the Sniffer include:
Banyan Vines, IBM Token-Ring, Novell Netware, XNS/MS-
Net (3Com 3+), DECnet, TCP/IP (including SNMP and
applications-layer protocols such as FTP, SMTP, and
TELNET), X Windows (for X version 11), NFS, and several
SUN proprietary protocols (including mount, pmap, RPC,
and YP). Supported LANs include: ethernet, Token-ring
(4Mb and 16Mb versions), ARCNET, StarLAN, IBM PC Net-
work (Broadband), and Apple Localtalk Network.
MECHANISM
The Sniffer is a self-contained, portable protocol
analyzer that require only AC line power and connection
to a network to operate. Normally passive (except when
in Traffic Generator mode), it captures images of all
or of selected frames in a working buffer, ready for
immediate analysis and display.
The Sniffer is a standalone device. Two platforms are
available: one for use with single network topologies,
the other for use with multi-network topologies. Both
include Sniffer core software, a modified network
interface card (or multiple cards), and optional proto-
col interpreter suites.
All Sniffer functions may be remotely controlled from a
modem-connected PC. Output from the Sniffer can be
imported to database or spreadsheet packages.
CAVEATS
In normal use, the Sniffer is a passive device, and so
will not adversely effect network performance. Perfor-
mance degradation will be observed, of course, if the
Sniffer is set to Traffic Generator mode and connected
to an active network.
BUGS
None known.
LIMITATIONS
None reported.
HARDWARE REQUIRED
None. The Sniffer is a self-contained unit, and
includes its own interface card. It installs into a
network as would any normal workstation.
SOFTWARE REQUIRED
None.
AVAILABILITY
The Sniffer is available commercially. For information
on your local representative, call or write:
Network General Corporation
4200 Bohannon Drive
Menlo Park, CA 94025
Phone: 415-688-2700
Fax: 415-321-0855
For acquisition by government agencies, the Sniffer is
included on the GSA schedule.
Internet Tool Catalog SNMP_DEVELOPMENT_KIT
NAME
The SNMP Development Kit
KEYWORDS
manager, status; IP; NMS, SNMP; UNIX; free, sourcelib.
ABSTRACT
The SNMP Development Kit comprises C Language source
code for a programming library that facilitates access
to the management services of the SNMP (RFC1098).
Sources are also included for a few simple client
applications whose main purpose is to illustrate the
use of the library. Example client applications query
remote SNMP agents in a variety of modes, and generate
or collect SNMP traps. Code for an example SNMP agent
that supports a subset of the Internet MIB (RFC1066)
is also included.
MECHANISM
The Development Kit facilitates development of SNMP-
based management applications -- both clients and
agents. Example applications execute SNMP management
operations according to the values of command line
arguments.
CAVEATS
None.
BUGS
Fixed in the next release.
LIMITATIONS
None reported.
HARDWARE REQUIRED
The SNMP library source code is highly portable and
runs on a wide range of platforms.
SOFTWARE REQUIRED
The SNMP library source code has almost no operating
system dependencies and runs in a wide range of
environments. Certain portions of the example SNMP
agent code are specific to the 4.3BSD implementation of
the UNIX system for the DEC MicroVAX.
AVAILABILITY
The Development Kit is available via anonymous FTP from
host allspice.lcs.mit.edu. The copyright for the
Development Kit is held by the Massachusetts Institute
of Technology, and the Kit is distributed without
charge according to the terms set forth in its code and
documentation. The distribution takes the form of a
UNIX tar file.
Bug reports, questions, suggestions, or complaints may
be mailed electronically to snmp-dk@ptt.lcs.mit.edu,
although no response in any form is guaranteed. Dis-
tribution via UUCP mail may be arranged by contacting
the same address. Requests for hard-copy documentation
or copies of the distribution on magnetic media are
never honored.
Internet Tool Catalog SNMP_Libraries_SNMP_RESEARCH
NAME
SNMP Libraries and Utilities from SNMP Research.
KEYWORDS
alarm, control, manager, map, security, status;
bridge, DECnet, Ethernet, FDDI, IP, OSI, ring, star;
NMS, SNMP;
DOS, UNIX, VMS;
sourcelib.
ABSTRACT
The SNMP Libraries and Utilities serve two purposes:
1) to act as building blocks for the construction of
SNMP-based agent and manager applications; and
2) to act as network management tools for network
fire fighting and report generation.
The libraries perform ASN.1 parsing and generation tasks
for both network management station applications and
network management agent applications. These libraries
hide the details of ASN.1 parsing and generation from
application writers and make it unnecessary for them to
be expert in these areas. The libraries are very robust
with considerable error checking designed in. The
several command line utilities include applications for
retrieving one or many variables, retrieving tables, or
effecting commands via the setting of remote network
management variables.
MECHANISM
The parsing is performed via recursive descent methods.
Messages are passed via the Simple Network Management
Protocol (SNMP).
CAVEATS
None.
BUGS
None known.
LIMITATIONS
The monitored and managed nodes must implement the SNMP
over UDP per RFC1157 or must be reachable via a proxy
agent.
HARDWARE REQUIRED
This software has been ported to numerous platforms
including workstations, general-purpose timesharing
systems, and embedded hardware in intelligent network
devices such as repeaters, bridges, and routers.
SOFTWARE REQUIRED
C compiler, TCP/IP library.
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
This is a commercial product available under license
from:
SNMP Research
3001 Kimberlin Heights Road
Knoxville, TN 37920-9716
Attn: John Southwood, Sales and Marketing
(615) 573-1434 (Voice) (615) 573-9197 (FAX)
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
users@seymour1.cs.utk.edu
Internet Tool Catalog SNMP_PACKAGED_AGENT_SNMP_RESEARCH
NAME
SNMP Packaged Agent System -- an SNMP host/gateway
agent daemon including a complete protocol stack and
runtime environment required to support an SNMP Agent
from SNMP Research.
KEYWORDS
control, manager, status;
bridge, Ethernet, FDDI, IP, OSI, ring, star;
NMS, SNMP;
DOS, standalone, UNIX;
sourcelib.
ABSTRACT
The snmpd agent daemon listens for and responds to
network management queries and commands from logically
remote network management stations. The agent daemon
also emits SNMP traps to identified trap receivers.
The agent daemon is designed to make the addition of
additional vendor-specific variables a
straight-forward task. The snmpd application comes
complete with source code including a powerful set of
portable libraries for generating and parsing SNMP
messages and a set of command line utilities.
The Packaged Agent System is designed to aid the
hardware manufacturer who is not experienced with the
TCP/IP protocol suite. A lightweight, non-preemptive
scheduler/tasking system for faster execution and less
impact on slow CPUs is included in the package.
Development environment is either MS DOS or UNIX.
MECHANISM
Network management variables are made available for
inspection and/or alteration by means of the Simple
Network Management Protocol (SNMP).
CAVEATS
None.
BUGS
None known.
LIMITATIONS
None reported.
HARDWARE REQUIRED
The Motorola 68XXX and the Intel 8088 and X86
platforms are fully supported. Other platforms can be
supported. Contact SNMP Research for details.
This software has been ported to numerous platforms
including workstations, general-purpose timesharing
systems, and embedded hardware in intelligent network
devices such as repeaters, bridges, and routers.
SOFTWARE REQUIRED
C compiler.
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
This is a commercial product available under license
from:
SNMP Research
3001 Kimberlin Heights Road
Knoxville, TN 37920-9716
Attn: John Southwood, Sales and Marketing
(615) 573-1434 (Voice) (615) 573-9197 (FAX)
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
users@seymour1.cs.utk.edu
Internet Tool Catalog SNMPD_SNMP_RESEARCH
NAME
snmpd -- an SNMP host/gateway agent daemon from SNMP
Research.
KEYWORDS
control, mananger, status;
bridge, Ethernet, FDDI, IP, OSI, ring, star;
NMS, SNMP;
DOS, UNIX;
sourcelib.
ABSTRACT
The snmpd agent daemon listens for and responds to
network management queries and commands from logically
remote network management stations. The agent daemon
also emits SNMP traps to identified trap receivers. The
agent daemon is architected to make the addition of
additional vendor-specific variables a straight-forward
task. The snmpd application comes complete with source
code including a powerful set of portable libraries for
generating and parsing SNMP messages and a set of
command line utilities.
MECHANISM
Network management variables are made available for
inspection and/or alteration by means of the Simple
Network Management Protocol (SNMP).
CAVEATS
None.
BUGS
None known.
LIMITATIONS
Only operating system variables available without
source code modifications to the operating system and
device device drivers are supported.
HARDWARE REQUIRED
This software has been ported to numerous platforms
including workstations, general-purpose timesharing
systems, and embedded hardware in intelligent network
devices such as repeaters, bridges, and routers.
SOFTWARE REQUIRED
C compiler.
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
This is a commercial product available under license
from:
SNMP Research
3001 Kimberlin Heights Road
Knoxville, TN 37920-9716
Attn: John Southwood, Sales and Marketing
(615) 573-1434 (Voice) (615) 573-9197 (FAX)
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
users@seymour1.cs.utk.edu
Internet Tool Catalog SPIDERMONITOR
NAME
SpiderMonitor P220, K220 and
SpiderAnalyzer P320, K320
KEYWORDS
alarm, analyzer, generator, traffic; DECnet, ethernet,
IP, OSI; eavesdrop; standalone; sourcelib.
ABSTRACT
The SpiderMonitor and SpiderAnalyzer are protocol
analyzers for performing ethernet LAN diagnostics, mon-
itoring, traffic generation, and troubleshooting. The
SpiderMonitor has the capability of capturing every
packet on a network and of decoding the first four
layers of the OSI protocol model. The SpiderAnalyzer
has additional software for decoding higher protocol
layers. Protocol suites understood: TCP/IP (including
SNMP and applications-layer protocols), OSI, XNS, DEC-
net and IPX. User-definable decodes can be written in
'C' with the Microsoft version 5.0 'C' compiler. A
decode guide is provided.
The SpiderAnalyzer supports multiple simultaneous
filters for capturing packets using predefined patterns
and error states. Filter patterns can also trigger on
NOT matching 1 or more filters, an alarm, or a speci-
fied time.
The SpiderAnalyzer can also employ TDR (Time Domain
Reflectometry) to find media faults, open or short cir-
cuits, or transceiver faults. It can transmit OSI,
XNS, and Xerox link-level echo packets to user-
specified stations, performs loop round tests.
In traffic generation mode, the SpiderAnalyzer has the
ability to generate packets at random intervals of ran-
dom lengths or any combination of random or fixed
interval or length, generation of packets with CRC
errors, or packets that are too short, or packets that
are too long.
Output from the SpiderMonitor/Analyzer can be imported
to database or spreadsheet packages.
MECHANISM
The SpiderMonitor and Spider Analyzer are available as
stand-alone, IBM PC compatible packages based upon a
Compaq III portable system, or as a plug-in boards for
any IBM XT/AT compatible machine. The model 220 (Spi-
derMonitor) systems provide a functional base suited
for most network management needs. The model 320 (Spi-
derAnalyzer) systems provide extended functionality in
the development mode and traffic generation mode as
well more filtering capabilities than the 220 models.
CAVEATS
Traffic generation will congest an operational ether-
net.
BUGS
None known.
LIMITATIONS
Monitoring of up to 1024 stations and buffering of up
to 1500 packets. The model 220 provides for 3 filters
with a filter depth of 46 bytes. The model 320 pro-
vides for 4 filters and a second level of filtering
with a filter depth of 64 bytes.
HARDWARE REQUIRED
PX20s are self contained, the KX20s require an IBM
PC/XT-AT compatible machine with 5 megabytes of hard
disk storage and the spare slot into which the board
kit is plugged.
SOFTWARE REQUIRED
None. The SpiderAnalyzer requires the Microsoft 'C'
Compiler, Version 5.0 for writing user defined decodes.
AVAILABILITY
The SpiderMonitor/Analyzer is available commercially.
For information on your local representative, call or
write:
Spider Systems, Inc.
12 New England Executive Park
Burlington, MA 01803
Telephone: 617-270-3510
FAX: 617-270-9818
Internet Tool Catalog SPIMS
NAME
SPIMS -- the Swedish Institute of Computer Science
(SICS) Protocol Implementation Measurement
System tool.
KEYWORDS
benchmark, debugger; IP, OSI; spoof; UNIX.
ABSTRACT
SPIMS is used to measure the performance of protocol
and "protocol-like" services including response time
(two-way delay), throughput and the time to open and
close connections. It has been used to:
o benchmark alternative protocol implementations,
o observe how performance varies when parameters in
specific implementations have been varied (i.e.,
to tune parameters).
SPIMS currently has interfaces to the DoD Internet Pro-
tocols: UDP, TCP, FTP, SunRPC, the OSI protocols from
the ISODE 4.0 distribution package: FTAM, ROSE, ISO TP0
and to Sunlink 5.2 ISO TP4 as well as Stanford's VMTP.
Also available are a rudimentary set of benchmarks,
stubs for new protocol interfaces and a user manual.
For an example of the use of SPIMS to tune protocols,
see:
Nordmark & Cheriton, "Experiences from VMTP: How
to achieve low response time," IFIP WG6.1/6.4:
Protocols for High-Speed Networks, May 1989,
Zurich. To be published.
For an example of how SPIMS can be used to benchmark
protocols, see:
Gunningberg, Bjorkman, Nordmark, Sjodin, Pink &
Stromqvist "Application Protocols and Performance
Benchmarks", IEEE Communications Magazine, June
1989, Vol. 27, No.6, pp 30-36.
Sjodin, Gunningberg, Nordmark, & Pink, "Towards
Protocol Benchmarks', IFIP WG6.1/6.4 Protocols
for High-Speed Networks, May 1989, Zurich, pp
57-67
MECHANISM
SPIMS runs as user processes and uses a TCP connection
for measurement set-up. Measurements take place
between processes over the measured protocol. SPIMS
generates messages and transfers them via the measured
protocol service according to a user-supplied specifi-
cation. SPIMS has a unique measurement specification
language that is used to specify a measurement session.
In the language there are constructs for different
application types (e.g., bulk data transfer), for
specifying frequency and sequence of messages, for dis-
tribution over message sizes and for combining basic
specifications. These specifications are independent
of both protocols and protocol implementations and can
be used for benchmarking. For more details on the
internals of SPIMS, see:
Nordmark & Gunningberg, "SPIMS: A Tool for Protocol
Implementation Performance Measurements" Proc. of 13:th
Conf. on Local Computer Networks, Minneapolis 1989, pp
222-229.
CAVEATS
None.
BUGS
None known.
LIMITATIONS
None reported.
HARDWARE REQUIRED
No restrictions.
SOFTWARE REQUIRED
SPIMS is implemented on UNIX, including SunOS 4.,
4.3BSD UNIX, DN (UNIX System V, with extensions) and
Ultrix 2.0/3.0. It requires a TCP connection for meas-
urement set-up. No kernel modifications or any modifi-
cations to measured protocols are required.
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
SPIMS is not in the public domain and the software is
covered by licenses. Use of the SPIMS software
represents acceptance of the terms and conditions of
the licenses.
The licenses are enclosed in the distribution package.
Licenses and SPIMS cover letter can also be obtained
via an Internet FTP connection without getting the whole
software. The retrieval procedure is identical to the
below university distribution via FTP. The file to
retrieve is pub/spims-dist/licenses.tar.Z
There are two different distribution classes depending on
requesting organization:
1. Universities and non-profit organizations.
To these organizations, SPIMS source code is distributed
free of charge. There are two ways to get the software:
1. FTP.
If you have an Internet FTP connection, you
can use anonymous FTP to sics.se
[192.16.123.90], and retrieve the file
pub/spims-dist/dist910304.tar.Z
(this is a .6MB compressed tar image) in
BINARY mode. Log in as user anonymous and at
the password prompt, use your complete
electronic mail address.
2. On a Sun 1/4-inch cartridge tape.
For mailing, a handling fee of US$150.00 will be
charged. Submit a bank check with the request.
Do not send tapes or envelopes.
2. Commercial organizations.
These organizations can chose between a license for
commercial use, or a license for internal research
only and no commercial use whatsoever.
For internal research use only:
The SPIMS source code is distributed for a one
time fee of US$500.00. Organizations
interested in the research prototype need to
contact us via e-mail and briefly motivate why
they qualify (non-commercial use) for the
research prototype.
They will thereafter get a permission to
obtain a copy from the same distribution
source as for universities.
Commercial use:
A commercial version of SPIMS will eventually
be distributed and supported by a commercial
partner. nIn the meantime we will distribute
the research prototype (source code) to
interested organizations without any guaranty
or support. Contact SICS for further
information.
For more information about the research prototype
distribution and about a commercial license, contact:
Swedish Institute of Computer Science
Att: Birgitta Klingenberg
P.O. Box 1263
S-164 28 Kista
SWEDEN
e-address: spims@sics.se
Phone: +46-8-7521500, Fax: +46-8-7517230
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
Bengt Ahlgren
Swedish Institute of Computer Science
Box 1263
S-164 28 KISTA, SWEDEN
Email: bengta@sics.se
Tel: +46 8 752 1562 (direct)
or +46 8 752 1500
Fax: +46 8 751 7230
Internet Tool Catalog SPRAY_SUN
NAME
spray
KEYWORDS
benchmark, generator; IP; ping; UNIX.
ABSTRACT
Spray is a traffic generation tool that generates RPC
or UDP packets, or ICMP Echo Requests. The packets are
sent to a remote procedure call application at the des-
tination host. The count of received packets is
retrieved from the remote application after a certain
number of packets have been transmitted. The differ-
ence in packets received versus packets sent represents
(on a LAN) the packets that the destination host had to
drop due to increasing queue length. A measure of
throughput relative to system speed and network load
can thus be obtained.
MECHANISM
See above.
CAVEATS
Spray can congest a network.
BUGS
None known.
LIMITATIONS
None reported.
HARDWARE REQUIRED
No restrictions.
SOFTWARE REQUIRED
SunOS
AVAILABILITY
Supplied with SunOS.
Internet Tool Catalog TCPDUMP
NAME
tcpdump
KEYWORDS
traffic; ethernet, IP, NFS; UNIX, VMS; free.
ABSTRACT
Tcpdump can interpret and print headers for the follow-
ing protocols: ethernet, IP, ICMP, TCP, UDP, NFS, ND,
ARP/RARP, AppleTalk. Tcpdump has proven useful for
examining and evaluating the retransmission and window
management operations of TCP implementations.
MECHANISM
Much like etherfind, tcpdump writes a log file of the
frames traversing an ethernet interface. Each output
line includes the time a packet is received, the type
of packet, and various values from its header.
CAVEATS
None.
BUGS
None known.
LIMITATIONS
Public domain version requires a kernel patch for
SunOS. TCPware for VMS - currently interprets headers
for IP, TCP, UDP, and ICMP only.
HARDWARE REQUIRED
Any Ultrix system (VAX or DEC RISC hardware)
SOFTWARE REQUIRED
Ultrix release 4.0 or later. For Ultrix 4.1, may
require the patched "if_ln.o" kernel module, available
from Digital's Customer Support Center.
AVAILABILITY
Available, though subject to copyright restrictions,
via anonymous FTP from ftp.ee.lbl.gov. The source and
documentation for the tool is in compressed tar format,
in file tcpdump.tar.Z. Also available from
spam.itstd.sri.com, in directory pub. For VMS hosts
with DEC ethernet controllers, available as part of TGV
MultiNet IP software package and TCPware for VMS from
Process Software Corporation.
Internet Tool Catalog TCPLOGGER
NAME
tcplogger
KEYWORDS
traffic; IP; eavesdrop; UNIX; free.
ABSTRACT
Tcplogger consists of modifications to the 4.3BSD UNIX
source code, and a large library of post-processing
software. Tcplogger records timestamped information
from TCP and IP packets that are sent and received on a
specified connection. For each TCP packet, information
such as sequence number, acknowledgement sequence
number, packet size, and header flags is recorded. For
an IP packet, header length, packet length and TTL
values are recorded. Customized use of the TCP option
field allows the detection of lost or duplicate pack-
ets.
MECHANISM
Routines of 4.3BSD UNIX in the netinet directory have
been modified to append information to a log in memory.
The log is read continuously by a user process and
written to a file. A TCP option has been added to
start the logging of a connection. Lots of post-
processing software has been written to analyze the
data.
CAVEATS
None.
BUGS
None known.
LIMITATIONS
To get a log at both ends of the connection, the modi-
fied kernel should be run at both the hosts.
All connections are logged in a single file, but
software is provided to filter out the record of a sin-
gle connection.
HARDWARE REQUIRED
No restrictions.
SOFTWARE REQUIRED
4.3BSD UNIX (as modified for this tool).
AVAILABILITY
Free, although a 4.3BSD license is required. Contact
Olafur Gudmundsson (ogud@cs.umd.edu).
Internet Tool Catalog TOKENVIEW_PROTEON
NAME
TokenVIEW
KEYWORDS
control, manager, status; ring; NMS, proprietary; DOS.
ABSTRACT
Network Management tool for 4/16 Mbit IEEE 802.5 Token
Ring Networks. Monitors active nodes and ring errors.
Maintains database of nodes, wire centers and their
connections. Separate network management ring allows
remote configuration of wire centers.
MECHANISM
A separate network management ring used with Proteon
Intelligent Wire Centers allows wire center configura-
tion information to be read and modified from a single
remote workstation. A log of network events used with
a database contain nodes, wire centers and their con-
nections, facilitates tracking and correction of net-
work errors. Requires an "E" series PROM, sold with
package.
CAVEATS
Currently, only ISA bus cards support the required E
series PROM.
BUGS
None known.
LIMITATIONS
256 nodes, 1 net.
HARDWARE REQUIRED
512K RAM, CGA or better, hard disk, mouse supported.
SOFTWARE REQUIRED
MS-DOS, optional mouse driver
AVAILABILITY
Fully supported product of Proteon, Inc. Previously
sold as Advanced Network Manager (ANM). For more in-
formation, contact:
Proteon, Inc. Phone: (508) 898-2800
2 Technology Drive Fax: (508) 366-8901
Westborough, MA 01581 Telex: 928124
Internet Tool Catalog TRACEROUTE
NAME
traceroute
KEYWORDS
routing; IP; ping; UNIX, VMS; free.
ABSTRACT
Traceroute is a tool that allows the route taken by
packets from source to destination to be discovered.
It can be used for situations where the IP record route
option would fail, such as intermediate gateways dis-
carding packets, routes that exceed the capacity of an
datagram, or intermediate IP implementations that don't
support record route. Round trip delays between the
source and intermediate gateways are also reported
allowing the determination of individual gateways con-
tribution to end-to-end delay.
Enhanced versions of traceroute have been developed
that allow specification of loose source routes for
datagrams. This allows one to investigate the return
path from remote machines back to the local host.
MECHANISM
Traceroute relies on the ICMP TIME_EXCEEDED error
reporting mechanism. When an IP packet is received by
an gateway with a time-to-live value of 0, an ICMP
packet is sent to the host which generated the packet.
By sending packets to a destination with a TTL of 0,
the next hop can be identified as the source of the
ICMP TIME EXCEEDED message. By incrementing the TTL
field the subsequent hops can be identified. Each
packet sent out is also time stamped. The time stamp
is returned as part of the ICMP packet so a round trip
delay can be calculated.
CAVEATS
Some IP implementations forward packets with a TTL of
0, thus escaping identification. Others use the TTL
field in the arriving packet as the TTL for the ICMP
error reply, which delays identification.
Sending datagrams with the source route option will
cause some gateways to crash. It is considered poor
form to repeat this behavior.
BUGS
None known.
LIMITATIONS
Most versions of UNIX have errors in the raw IP code
that require kernel mods for the standard version of
traceroute to work. A version of traceroute exists
that runs without kernel mods under SunOS 3.5 (see
below), but it only operates over an ethernet inter-
face.
HARDWARE REQUIRED
No restrictions.
SOFTWARE REQUIRED
BSD UNIX or related OS, or VMS.
AVAILABILITY
Available by anonymous FTP from ftp.ee.lbl.gov, in file
traceroute.tar.Z. It is also available from
uc.msc.umn.edu.
A version of traceroute that supports Loose Source
Record Route, along with the source code of the
required kernel modifications and a Makefile for
installing them, is available via anonymous FTP from
zerkalo.harvard.edu, in directory pub, file
traceroute_pkg.tar.Z.
A version of traceroute that runs under SunOS 3.5 and
does NOT require kernel mods is available via anonymous
FTP from dopey.cs.unc.edu, in file
~ftp/pub/traceroute.tar.Z.
For VMS, traceroute is available as part of TGV Mul-
tiNet IP software package.
Internet Tool Catalog TRPT
NAME
TRPT -- transliterate protocol trace
KEYWORDS
traffic; IP; eavesdrop; UNIX; free.
ABSTRACT
TRPT displays a trace of a TCP socket events. When no
options are supplied, TRPT prints all the trace records
found in a system, grouped according to TCP connection
protocol control block (PCB).
An example of TRPT output is:
38241 ESTABLISHED:input
[e0531003..e0531203)@6cc5b402(win=4000)<ACK> -> ESTA-
BLISHED
38241 ESTABLISHED:user RCVD -> ESTABLISHED
38266 ESTABLISHED:output
6cc5b402@e0531203(win=4000)<ACK> -> ESTABLISHED
38331 ESTABLISHED:input
[e0531203..e0531403)@6cc5b402(win=4000)<ACK,FIN,PUSH>
-> CLOSE_WAIT
38331 CLOSE_WAIT:output
6cc5b402@e0531404(win=3dff)<ACK> -> CLOSE_WAIT
38331 CLOSE_WAIT:user RCVD -> CLOSE_WAIT
38343 LAST_ACK:output
6cc5b402@e0531404(win=4000)<ACK,FIN> -> LAST_ACK
38343 CLOSE_WAIT:user DISCONNECT -> LAST_ACK
38343 LAST_ACK:user DETACH -> LAST_ACK
MECHANISM
TRPT interrogates the buffer of TCP trace records that
is created when a TCP socket is marked for debugging.
CAVEATS
Prior to using TRPT, an analyst should take steps to
isolate the problem connection and find the address of
its protocol control blocks.
BUGS
None reported.
LIMITATIONS
A socket must have the debugging option set for TRPT to
operate. Another problem is that the output format of
TRPT is difficult.
HARDWARE REQUIRED
No restrictions.
SOFTWARE REQUIRED
BSD UNIX or related OS.
AVAILABILITY
Included with BSD and SunOS distributions. Available
via anonymous FTP from uunet.uu.net, in file bsd-
sources/src/etc/trpt.tar.Z.
Internet Tool Catalog TTCP
NAME
TTCP
KEYWORDS
benchmark, generator; IP; ping; UNIX, VMS; free.
ABSTRACT
TTCP is a traffic generator that can be used for test-
ing end-to-end throughput. It is good for evaluating
TCP/IP implementations.
MECHANISM
Cooperating processes are started on two hosts. The
open a TCP connection and transfer a high volume of
data. Delay and throughput are calculated.
CAVEATS
Will greatly increase system load.
BUGS
None known.
LIMITATIONS
None reported.
HARDWARE REQUIRED
No restrictions.
SOFTWARE REQUIRED
BSD UNIX or related OS, or VMS.
AVAILABILITY
Source for BSD UNIX is available via anonymous FTP from
vgr.brl.mil, in file ftp/pub/ttcp.c, and from sgi.com,
in file sgi/src/ttcp.c. A version of TTCP has also
been submitted to the USENET news group
comp.sources.unix. For VMS, ttcp.c is included in the
MultiNet Programmer's Kit, a standard feature of TGV
MultiNet IP software package.
Internet Tool Catalog UNISYS-PARAMAX
NAME
Paramax Network Security Server
KEYWORDS
alarm, control, manager, security, status;
ethernet, FDDI, IP; X; UNIX.
ABSTRACT
The Paramax Network Security Server (NSS) is a
security officer's tool for centralized security
management of TCP/IP-based networks. The NSS provides
capability for collection, on-line storage,
maintenance, and correlation of audit data from hosts,
workstations, servers, and network devices. Through
the X window based user interface, a security officer
can review and analyze this audit data at the NSS,
select and request filtered portions of host audit
data, and receive and analyze security alerts from
across the network. The NSS supports centralized
access control of network resources through its
capability to create and update user and host access
permissions data. The user access permissions data
identifies network addresses that each user is
permitted to access. The host access permissions data
identifies network addresses between which
communication is permitted. The NSS supports
centralized management of user authentication data
(user IDs and passwords) and other user data for use
by hosts, workstations, and servers in the network.
It generates pseudo-random pronounceable passwords for
selection and assignment to users by the security officer.
The NSS deadman timer locks the NSS screen or logs the
security officer off the NSS after periods of
inactivity. A biometric authentication device is
optional for rigorous fingerprint authentication of
users at the NSS, and logins to the NSS itself are
permitted only at the console. The NSS currently
provides centralized security management for a System High
Network. It is being upgraded for a Compartmented Mode
environment.
MECHANISM
The NSS uses the Audit Information Transfer Protocol
(AITP) for the transfer of security alerts and audit
data. AITP is NOT proprietary, and the specification
is available from the address listed below. Access to
the NSS audit database is provided via the Structured
Query Language (SQL).
CAVEATS
None.
BUGS
None known.
LIMITATIONS
None reported.
HARDWARE REQUIRED
Hardware required is a Sun 4 (SPARCStation) with a color
monitor, at least 600 MB disk, and 150 MB 1/4"
cartridge tape drive.
SOFTWARE REQUIRED
SunOS Version 4.1.1 running the Sun OpenWindows X
windowing environment and the SYBASE Relational Data
Base Management System.
AVAILABILITY AND CONTACT POINT FOR INFORMATION ABOUT THIS TOOL
Commercially available from:
Paramax Systems Corporation
5151 Camino Ruiz
Camarillo, California 93011-6004
805-987-6811
Peter Vazzana
CONTACT POINT FOR CHANGES TO THIS CATALOG ENTRY
Paramax Systems Corporation
5151 Camino Ruiz