<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-3776390107993976285</id><updated>2012-02-16T18:08:31.881-08:00</updated><title type='text'>FAST</title><subtitle type='html'>Future system Threat Analysis &amp;amp; Security Response Team</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://certteamfast.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://certteamfast.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>TeamFast</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://1.bp.blogspot.com/-xKR7Uf8t6Nk/TsN3Y7WUAfI/AAAAAAAAAAo/lh-gOk8QD4w/s220/FAST.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>5</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-3776390107993976285.post-4676894094638424248</id><published>2011-12-27T00:13:00.000-08:00</published><updated>2011-12-27T01:24:33.916-08:00</updated><title type='text'>[TOOL] snort2pcap</title><content type='html'>&lt;div style="text-align: center;"&gt;&lt;b&gt;&lt;u&gt;&lt;span style="font-size: x-large;"&gt;Snort2Pcap&lt;/span&gt;&lt;/u&gt;&lt;/b&gt;&lt;/div&gt;&lt;br /&gt;안녕하십니까 teamFast 관리자 협군 입니다.&lt;br /&gt;&lt;br /&gt;오늘은 간단하게 만들어 사용하고 있는 툴 중에 하나를 공개하려 합니다.&lt;br /&gt;&lt;br /&gt;snort 관련 업무 하시는 분들이 사용하시면 좋을것 같습니다.&lt;br /&gt;&lt;br /&gt;제가 편하기 위해 만든 툴이기 때문에 저와 저희팀 밖에 사용하지 않아 주석이 부족하며, 제가 정식 개발자가 아니라 소스가 난잡할 수 있음을 먼저 말씀드립니다.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;1. 왜 만들었나??&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;snort 룰에 관련된 업무를 하다보니 탐지테스트를 할 경우가 많습니다.&lt;br /&gt;&lt;br /&gt;이럴 때 패턴ID에 맞게 PCAP을 보유하고 있으면 가장 나이스한 경우가 되겠지만 그렇치않을 경우에는 패턴을 보고 탐지되는 패킷을 따로 제작하여야 하는 번거러움이 있습니다.&lt;br /&gt;&lt;br /&gt;전 참 귀찮을걸 싫어합니다.&lt;br /&gt;&lt;br /&gt;그래서 생각했습니다.&lt;br /&gt;&lt;br /&gt;"snort 룰을 보고 packet을 재생해주거나 pcap파일을 만들어 주는 녀석이 있으면 좋을텐데.."&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;2. 뭘로 만들었나?&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;python 을 이용하여 만들었습니다.&lt;br /&gt;&lt;br /&gt;테스트 환경은 python 2.6.4에서 개발하였고 테스트 하였습니다.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;3. 에러 없이 잘돌아가느냐?&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;업무외적인 시간에 만들었기 때문에 시간이 없어 flowbit을 포함한 몇몇 룰들은 정상동작하지 않을수 있습니다. &lt;br /&gt;&lt;br /&gt;제 업무에 사용할 때는 오류 없이 잘돌아가고 탐지도 잘 됩니다.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;4. 어떻게 공개할 것인가?&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;파이썬 소스폴더를 압축해서 공개 할 것입니다.&lt;br /&gt;&lt;br /&gt;다시한번 말씀드리지만 제가 편하기 위해 만든 툴이기 때문에 저와 저희팀 밖에 사용하지 않아 주석이 부족하며, 제가 정식 개발자가 아니라 소스가 난잡할 수 있음을 먼저 말씀드립니다.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;5. 어떻게 사용하는가?&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;아래명령어를 입력하고 변환파일명 -&amp;gt; 소스IP -&amp;gt; 목적지IP -&amp;gt; 변환&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-5vHW1QSERfg/Tvl7TB63E9I/AAAAAAAAABs/atv00Fqwy4k/s1600/snort2pcap-1.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-5vHW1QSERfg/Tvl7TB63E9I/AAAAAAAAABs/atv00Fqwy4k/s1600/snort2pcap-1.png" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;실행후에 아래와 같은 결과물이 생성됩니다.&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-am-ZV3cua88/Tvl8IyORz6I/AAAAAAAAACE/sa_SQ2lSrvc/s1600/snort2pcap-2.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="221" src="http://4.bp.blogspot.com/-am-ZV3cua88/Tvl8IyORz6I/AAAAAAAAACE/sa_SQ2lSrvc/s640/snort2pcap-2.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;br /&gt;&lt;b&gt;6.어디서 다운받아야 되는가?&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;다운로드 : &lt;a href="http://www.future.co.kr/board/lib/down.php?fname=Snort2Pcap_1112271.zip&amp;amp;db=board20&amp;amp;number=24"&gt;Snort2Pcap.zip&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;7. 사용하다 안되면 어떻게 해야되는가?&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;해당 툴에 대해 더는 업데이트 및 수정 예정은 없으나 사용하시다가 오류나는 부분은 캡쳐를 떠서 &amp;nbsp;보내주시면 답변을 드리겠습니다.&lt;br /&gt;&lt;br /&gt;보내주실 곳 : &lt;b&gt;hjung@future.co.kr, cert@future.co.kr, hyoub9un@gmail.com&amp;nbsp;&lt;/b&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3776390107993976285-4676894094638424248?l=certteamfast.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://certteamfast.blogspot.com/feeds/4676894094638424248/comments/default' title='댓글'/><link rel='replies' type='text/html' href='http://certteamfast.blogspot.com/2011/12/tool-snort2pcap.html#comment-form' title='0개의 덧글'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/4676894094638424248'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/4676894094638424248'/><link rel='alternate' type='text/html' href='http://certteamfast.blogspot.com/2011/12/tool-snort2pcap.html' title='[TOOL] snort2pcap'/><author><name>TeamFast</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://1.bp.blogspot.com/-xKR7Uf8t6Nk/TsN3Y7WUAfI/AAAAAAAAAAo/lh-gOk8QD4w/s220/FAST.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/-5vHW1QSERfg/Tvl7TB63E9I/AAAAAAAAABs/atv00Fqwy4k/s72-c/snort2pcap-1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3776390107993976285.post-8258130828776425774</id><published>2011-12-21T00:45:00.000-08:00</published><updated>2011-12-21T00:52:21.186-08:00</updated><title type='text'>[ TOOL ] ReplayPcap ver 0.2</title><content type='html'>안녕하세요 TeamFast 관리자 협군 입니다.&lt;br /&gt;&lt;br /&gt;회사 업무 때문에 정신없이 지내다 이제서야 버그 수정을 했네요.&lt;br /&gt;&lt;br /&gt;그럼 수정사항부터 말씀드리겠습니다.&lt;br /&gt;&lt;br /&gt;&lt;u&gt;ReplayPcap ver 0.2 수정사항&lt;/u&gt;&lt;br /&gt;&lt;br /&gt;- XP 에서 지원되지 않는 함수 제거&lt;br /&gt;- IPv6 패킷의 요약정보가 잘못보이던 버그 수정&lt;br /&gt;- 패킷요약정보 출력시 IP 헤더를 가진 패킷을 제외한 패킷에 대한 출력 버그 수정&lt;br /&gt;- List / Pcap 파일 루프 입력시 프로그래스바의 진행상황과의 동기화 버그 수정&lt;br /&gt;- Route 모드 시에 출발지 IP와 목적지 IP에 매칭되지 않는 패킷 재생되지 않는 버그 수정&lt;br /&gt;- 파일리스트 추가시 비정상적인 리스트 출력 버그 수정&lt;br /&gt;- 파일리스트 삭제시 전체가 삭제되던 버그 수정&lt;br /&gt;- 그외...&lt;br /&gt;&lt;br /&gt;이상입니다.&lt;br /&gt;&lt;br /&gt;아직 제가 계획한 툴의 완성도에 너무 부족하지만 열심히 공부하고 수정해서 쓰기 편하고 유용한 툴로 나아가겠습니다.&lt;br /&gt;&lt;br /&gt;ReplayPcap ver 0.2 download :&amp;nbsp;&lt;a href="http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap_ver_0.2.exe&amp;amp;db=board20&amp;amp;number=22" target="_blank"&gt;Download&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;ReplayPcap 메뉴얼 111221 download :&amp;nbsp;&lt;a href="http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap_manual_ver1.1.pdf&amp;amp;db=board20&amp;amp;number=23" target="_blank"&gt;Download&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;버그사항 및 문의사항은 &amp;nbsp;"cert@future.co.kr" 또는 "hjung@future.co.kr", "hyoub9un@gmail.com" 으로 보내주시면 성실히 답변드리겠습니다.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3776390107993976285-8258130828776425774?l=certteamfast.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://certteamfast.blogspot.com/feeds/8258130828776425774/comments/default' title='댓글'/><link rel='replies' type='text/html' href='http://certteamfast.blogspot.com/2011/12/tool-replaypcap-ver-02.html#comment-form' title='0개의 덧글'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/8258130828776425774'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/8258130828776425774'/><link rel='alternate' type='text/html' href='http://certteamfast.blogspot.com/2011/12/tool-replaypcap-ver-02.html' title='[ TOOL ] ReplayPcap ver 0.2'/><author><name>TeamFast</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://1.bp.blogspot.com/-xKR7Uf8t6Nk/TsN3Y7WUAfI/AAAAAAAAAAo/lh-gOk8QD4w/s220/FAST.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3776390107993976285.post-7069897770540159222</id><published>2011-11-21T19:12:00.000-08:00</published><updated>2011-11-21T19:47:23.441-08:00</updated><title type='text'>[ TOOL ] ReplayPcap - 수정사항</title><content type='html'>&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;안녕하십니까 FAST 관리자 '협군' 입니다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;먼저 gilgil 님께서 보내주신 버그 리포팅에 대해 진심으로 감사드립니다. (_ _ )&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;----------------------------------------------------------------------------------&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;버그 내용:&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;flow view 버그 및 icmp 처리시 오류&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;처리 내용:&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;flow view - IP 추출기능 수정&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;icmp 처리 - icmp 처리 기능 추가&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-NMLGmdvJgRE/TssQozTIReI/AAAAAAAAABg/JWURp6dCdWc/s1600/update_history.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="363" src="http://4.bp.blogspot.com/-NMLGmdvJgRE/TssQozTIReI/AAAAAAAAABg/JWURp6dCdWc/s640/update_history.png" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;----------------------------------------------------------------------------------&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;약간의 변경사항이 있어서 다시 작성해 드립니다.^^&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;ReplayPcap ver 0.1&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;------------------&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;소개&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;----&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;본 프로그램은 pcap, cap, acp 등의 확장자를 가지는 패킷 저장 파일을 재생하는 툴이다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;원하는 패킷을 선택하여 지정한 네트워크 카드로 재생한다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;패킷의 재생 속도를 제어할 수 있고 IPv4 패킷을 IPv6 주소로 재생할 수 있는 것이 특징이다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;설치&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;----&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;본 프로그램은 별도의 설치가 필요 없으며 실행파일을 실행하여 동작한다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;윈도우 모든 버전의 환경에서 동작 가능하다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;운영체제&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;--------&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;windows XP/7( 테스트 진행 상황에 따라 변동 될 수 있음 )&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;b&gt;필요라이브러리&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;b&gt;--------------&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;b&gt;winpcap 라이브러리( 4.1.2 테스트 완료 , 테스트진행 상황에 따라 변동 될 수 있음 &amp;nbsp;)&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;버전&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;----&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;v0.1 : 최초 프로그램 버전&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;사용법&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;------&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;자세한 사용법은 본 프로그램의 메뉴얼을 참조한다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;작성자&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;------&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;정협&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;버그리포팅에 대해서는 최대한 빠르게 적용을 할 것 입니다.&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;다시 한번 gilgil 님께 감사드립니다. (^ ^ )&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;ReplayPcap Download:&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;a href="http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap_ver_0.1_111122.exe&amp;amp;db=board20&amp;amp;number=22"&gt;http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap_ver_0.1_111122.exe&amp;amp;db=board20&amp;amp;number=22&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;ReplayPcap Manual:&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;a href="http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap%EB%A9%94%EB%89%B4%EC%96%BC-111122.pdf&amp;amp;db=board20&amp;amp;number=23"&gt;http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap메뉴얼-111122.pdf&amp;amp;db=board20&amp;amp;number=23&lt;/a&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span" style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style="font-family: Georgia, Utopia, 'Palatino Linotype', Palatino, serif; font-size: large;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3776390107993976285-7069897770540159222?l=certteamfast.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://certteamfast.blogspot.com/feeds/7069897770540159222/comments/default' title='댓글'/><link rel='replies' type='text/html' href='http://certteamfast.blogspot.com/2011/11/tool-replaypcap_21.html#comment-form' title='4개의 덧글'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/7069897770540159222'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/7069897770540159222'/><link rel='alternate' type='text/html' href='http://certteamfast.blogspot.com/2011/11/tool-replaypcap_21.html' title='[ TOOL ] ReplayPcap - 수정사항'/><author><name>TeamFast</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://1.bp.blogspot.com/-xKR7Uf8t6Nk/TsN3Y7WUAfI/AAAAAAAAAAo/lh-gOk8QD4w/s220/FAST.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/-NMLGmdvJgRE/TssQozTIReI/AAAAAAAAABg/JWURp6dCdWc/s72-c/update_history.png' height='72' width='72'/><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3776390107993976285.post-2377020391678845102</id><published>2011-11-20T21:32:00.000-08:00</published><updated>2011-11-20T22:30:59.833-08:00</updated><title type='text'>[ TOOL ] ReplayPcap</title><content type='html'>안녕하십니까 FAST 관리자 &lt;b&gt;'협군' &lt;/b&gt;입니다.&lt;br /&gt;&lt;br /&gt;저희 팀에서 Packet 관련된 테스트를 진행 할 때 사용하는 툴을 공유할까 합니다.&lt;br /&gt;&lt;br /&gt;툴 이름은 ReplayPcap 이며 현재 버젼은 0.1 이며 간략한 내용은 아래와 같습니다.&lt;br /&gt;&lt;br /&gt;&lt;div style="text-align: center;"&gt;ReplayPcap ver 0.1&lt;/div&gt;&lt;div style="text-align: center;"&gt;------------------&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;소개&lt;br /&gt;----&lt;br /&gt;본 프로그램은 pcap, cap, acp 등의 확장자를 가지는 패킷 저장 파일을 재생하는 툴이다.&lt;br /&gt;원하는 패킷을 선택하여 지정한 네트워크 카드로 재생한다.&lt;br /&gt;패킷의 재생 속도를 제어할 수 있고 IPv4 패킷을 IPv6 주소로 재생할 수 있는 것이 특징이다.&lt;br /&gt;&lt;br /&gt;설치&lt;br /&gt;----&lt;br /&gt;본 프로그램은 별도의 설치가 필요 없으며 실행파일을 실행하여 동작한다.&lt;br /&gt;윈도우 모든 버전의 환경에서 동작 가능하다.&lt;br /&gt;&lt;br /&gt;운영체제&lt;br /&gt;--------&lt;br /&gt;windows XP/7( 테스트 진행 상황에 따라 변동 될 수 있음 )&lt;br /&gt;&lt;br /&gt;필요라이브러리&lt;br /&gt;--------------&lt;br /&gt;vs2008 재배포 패키지&lt;br /&gt;최신 winpcap 라이브러리&lt;br /&gt;&lt;br /&gt;버전&lt;br /&gt;----&lt;br /&gt;v0.1 : 최초 프로그램 버전&lt;br /&gt;&lt;br /&gt;사용법&lt;br /&gt;------&lt;br /&gt;자세한 사용법은 본 프로그램의 메뉴얼을 참조한다.&lt;br /&gt;&lt;br /&gt;작성자&lt;br /&gt;------&lt;br /&gt;정협&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;해당 툴은 현재 릴리즈 버젼이 아니며 전문 개발자가 아닌 사람( '협군' ) 이 만들어서 사소한&lt;br /&gt;&lt;br /&gt;버그들이 많이 존재 할 수 있습니다.&lt;br /&gt;&lt;br /&gt;버그 및 기능 개선 의견은 &amp;nbsp;&lt;b&gt;cert@future.co.kr&lt;/b&gt; 또는 &lt;b&gt;hjung@future.co.kr &lt;/b&gt;으로 보내주시면&lt;br /&gt;&lt;br /&gt;확인&amp;nbsp;후 성실히&amp;nbsp;답변 드리도록 하겠습니다.&lt;br /&gt;&lt;br /&gt;툴의 공유 목적은 네트워크 보안장비 테스트/ Packet 관련된 테스트 등에 사용하시면 유용할&lt;br /&gt;&lt;br /&gt;것이라 생각됩니다.( 저희도 그렇게 이용을 하고 있습니다. )&lt;br /&gt;&lt;br /&gt;이후 업데이트 및 변경되는 점은 블로그를 통해 다시 게시하도록 하겠습니다.&lt;br /&gt;&lt;br /&gt;감사합니다.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap_ver_0.1.exe&amp;amp;db=board20&amp;amp;number=22"&gt;ReplayPcap download : http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap_ver_0.1.exe&amp;amp;db=board20&amp;amp;number=22&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap%B8%DE%B4%BA%BE%F3-111116.pdf&amp;amp;db=board20&amp;amp;number=23"&gt;ReplayPcap manual : http://www.future.co.kr/board/lib/down.php?fname=ReplayPcap%B8%DE%B4%BA%BE%F3-111116.pdf&amp;amp;db=board20&amp;amp;number=23&lt;/a&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3776390107993976285-2377020391678845102?l=certteamfast.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://certteamfast.blogspot.com/feeds/2377020391678845102/comments/default' title='댓글'/><link rel='replies' type='text/html' href='http://certteamfast.blogspot.com/2011/11/tool-replaypcap.html#comment-form' title='2개의 덧글'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/2377020391678845102'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/2377020391678845102'/><link rel='alternate' type='text/html' href='http://certteamfast.blogspot.com/2011/11/tool-replaypcap.html' title='[ TOOL ] ReplayPcap'/><author><name>TeamFast</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://1.bp.blogspot.com/-xKR7Uf8t6Nk/TsN3Y7WUAfI/AAAAAAAAAAo/lh-gOk8QD4w/s220/FAST.jpg'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3776390107993976285.post-5047414844225247856</id><published>2011-11-15T23:59:00.000-08:00</published><updated>2011-11-20T23:53:54.117-08:00</updated><title type='text'>[알림] 안녕하세요. Team FAST 입니다.</title><content type='html'>안녕하세요. Team FAST 입니다.&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;b&gt;FAST &lt;/b&gt;는 &amp;nbsp;&lt;b&gt;F&lt;/b&gt;uture Systems Threat &lt;b&gt;A&lt;/b&gt;nalysis &amp;amp; &lt;b&gt;S&lt;/b&gt;ecurity Response &lt;b&gt;T&lt;/b&gt;eam 의 약자로&amp;nbsp;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Team Fast 블로그는 &amp;nbsp;&lt;b&gt;(주)퓨쳐시스템 침해대응센터 분석팀&lt;/b&gt;에서 운영하는 블로그입니다.&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;앞으로&amp;nbsp;Team Fast 블로그는&amp;nbsp;양질의 보안관련 정보를 제공할 수 있도록 하겠습니다.&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;누구에게나 열려있는 블로그로 언제나 많은 방문 부탁드립니다.&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;그럼 앞으로 좋은 정보로 찾아뵙겠습니다.&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;2011.11.16 &amp;nbsp;Team FAST 블로그 운영자&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3776390107993976285-5047414844225247856?l=certteamfast.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://certteamfast.blogspot.com/feeds/5047414844225247856/comments/default' title='댓글'/><link rel='replies' type='text/html' href='http://certteamfast.blogspot.com/2011/11/team-fast-team-fast.html#comment-form' title='0개의 덧글'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/5047414844225247856'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3776390107993976285/posts/default/5047414844225247856'/><link rel='alternate' type='text/html' href='http://certteamfast.blogspot.com/2011/11/team-fast-team-fast.html' title='[알림] 안녕하세요. Team FAST 입니다.'/><author><name>TeamFast</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='31' src='http://1.bp.blogspot.com/-xKR7Uf8t6Nk/TsN3Y7WUAfI/AAAAAAAAAAo/lh-gOk8QD4w/s220/FAST.jpg'/></author><thr:total>0</thr:total></entry></feed>
