Mike Oswald wrote:
> I do not think tools like Ethereal (Wireshark) can capture traffic from a
> specific application, can they?
If the application communicates on a particular port, they certainly
can. You can look at the traffic bound for port 80 of remote machines to
see (most of) the requests that your web browser sends, for example.
I'm pretty sure these sorts of things can identify at least some
protocols by the format of the messages as well, including HTTP, and so
see the return traffic *to* the browser. Perhaps also associate a
request with its responses.
In theory, they could also identify all traffic from a specific
application by using whatever method ZoneAlarm and similar firewall
software uses to tell which traffic is from what application. I'm not
sure if any actually do this, however.
--
There's only four things you can be certain of: taxes, change, spam, and
death.
|