etch  ] [  etch-m68k  ]
[ Source: fragroute  ]

Package: fragroute (1.2-7.1)

Test a NIDS by attempting to evade using fragmented packets

fragroute intercepts, modifies, and rewrites egress traffic destined for a specified host, implementing most of the attacks described in the Secure Networks "Insertion, Evasion, and Denial of Service: Eluding Network Intrusion Detection" paper of January 1998.

It features a simple ruleset language to delay, duplicate, drop, fragment, overlap, print, reorder, segment, source-route, or otherwise monkey with all outbound packets destined for a target host, with minimal support for randomized or probabilistic behaviour.

This tool was written in good faith to aid in the testing of network intrusion detection systems, firewalls, and basic TCP/IP stack behaviour. Please do not abuse this software.

Tags: Software Development: Testing and QA, User Interface: Command Line, Networking: Scanning, Role: Program, Scope: Utility, Purpose: Proxying, Routing

Other Packages Related to fragroute

  • depends
  • recommends
  • suggests
  • dep: libc6 (>= 2.3.5-1)
    GNU C Library: Shared libraries
  • dep: libdumbnet1
    A dumb, portable networking library
  • dep: libevent1 (>= 1.1a)
    An asynchronous event notification library
  • dep: libpcap0.7
    System interface for user-level packet capture

Download fragroute

Download for all available architectures
Architecture Package Size Installed Size Files
m68k 28.6 kB132 kB [list of files]