Tcpdpriv removes sensitive information from a packet trace, replacing it with contrived information from which the sensitive information cannot be reconstructed. By removing the sensitive information, the output of tcpdpriv may be shared with others (for debugging or network analysis, say). For a possible attack see ${PREFIX}/share/doc/tcpdpriv/attack50.ps. Support for pflog output from Can Erkin Acar. Support for IPv6, ICMP and ARP was adapted from Kenjiro Cho's hacked version of tcpdpriv.
WWW: http://ita.ee.lbl.gov/html/contrib/tcpdpriv.html
None
None
None