Hi Larry,
Just in case somebody is interested, I have modified the MAC/IP report form in order to allow filtering by the Vlan ID and Port Number fields (I needed to filter by those fields for my work). I've attached the modified files.
And regarding the IP spoofing detection functionality I talked about, I hope will make some progress this week. The functionality will search on the mactrack_ports table looking for temporal differences between entries which are indicative of IP-spoofing, like an IP changing of associated mac between two polling cycles. I'm planning to create incident items that could be stored in another table and showed by another form, maybe with options for acknowledge and delete it or so. I'm also considering some form of alerting of those incidents...
Thanks!
Feature VLAN ID and Port Name Filters
Moderators: Developers, Moderators
Who is online
Users browsing this forum: No registered users and 0 guests