There are some other related posts in this blog:
- Top Cyber Security Tools
- Top Internet / Network Tools
- Top Information Security Architect Related Resources
- Top Blog and Youtube Related Websites & Tools
- Top Application Security Tools
Internet/Network Tools Portal
- LOCAPing - Ping from multiple locations
- MXToolBox - SuperTools - PortScan
- http://centralops.net/co/
- Robtex Swiss Army Knife Internet Tool
- http://ip111.cn/
- https://my-addr.com/
- http://ping.eu/
Ping – Shows how long it takes for packets to reach host
Traceroute – Traces the route of packets to destination host from our server
DNS lookup – Look up DNS record
WHOIS – Lists contact info for an IP or domain
Port check – Tests if port is opened on specified IP
Reverse lookup – Gets hostname by IP address
Proxy checker – Detects a proxy server
Bandwidth meter – Detects your download speed from our server
Network calculator – Calculates subnet range by network mask
Network mask calculator – Calculates network mask by subnet range
Country by IP – Detects country by IP or hostname
Unit converter – Converts values from one unit to another
Internet/Network Speed Test
Online Tools
Log Management (Security Information and Event Management - SIEM)
Configuration Management -
System Image Management - File Transferring
Network Documentation
Network Access Control
Network Performance Monitoring
Lab Environment
Before you click away to do some heavy network security reading, please leave a comment and share your favorite network and security tools so that I can add them to my list!
- http://www.speedtest.net/
- http://speedcheck.rogers.com/en.html
- Netflix Speed Test: fast.com: it tells you what your download speed is from Netflix’s servers.
- "Wifi Speed Test" by Speedcheck.org
- https://speed.cloudflare.com/
- http://www.dslreports.com/speedtest
- https://speedtest.ciktel.com/
Offline Tools:
- iperf from http://sourceforge.net/projects/iperf/
IP Subnet Calculator
Network Monitoring Related
- UptimeRobot
- https://hetrixtools.com/ - blacklist check and monitor your IPs or Domains
- http://www.monitor.us - Free all-in-one IT systems monitoring from the cloud
- Uptime Robot - It monitors your websites every 5 minutes and alerts you if your sites are down
- Solarwinds Network Performance Monitor (Free Trial)
- WhatsUp Gold (Free Trial)
- Paessler PRTG (Free Trial)
- OpManager from ManageEngine
- Nagios Core and Nagios XI
- Pandora NMS
- Zenoss
- Dynatrace
- ConnectWise Automate
- Zabbix
- 听云 - 专业的应用性能监控平台 Alexa排名前100家企业有82家正在使用听云
- simpleops.io - One site only for free account.
DNS and Domain Name Related
- http://www.dnsstuff.com/
- http://my-addr.com/
- https://www.whatsmydns.net/
- http://www.cloudflare.com - protects and accelerates any website online. CloudFlare is designed to accelerate and secure any website.
- http://whois.domaintools.com/ - is the leader in domain name, DNS and Internet OSINT-based cyber threat intelligence and cybercrime forensics products and data.
- DNS checks detailed dns information for a hostname ( www.facebook.com , www.yahoo.com , www.youtube.com )
- IP-number checks ip number information such as dns reverse and forwards
BGP Toolkit
- AS numbers checks information on an AS-number
- AS macros checks who belongs to an AS-macro
- route checks a specific routed prefix
- http://bgp.he.net/
- http://routeserver.org/ (telnet into live BGP Routers and Check BGP table, if see BGP routing information is help you to isolate an issue you are facing. )
Choose any one of servers by clicking the spot and it will bring you to this kind of link: telnet://route-views.on.bb.telus.com
route-views.ab>show bgp paths 47102
Address Hash Refcount Metric Path
0x666C2980 2421 0 0 852 3257 4436 23498 47102 47102 i
route-views.ab>sh ip bgp 199.xxx.xxx.0
BGP routing table entry for 199.xxx.xxx.0/24, version 82108513
Bestpath Modifiers: deterministic-med
Paths: (1 available, best #1)
Not advertised to any peer
852 3257 4436 23498 47102 47102
154.11.98.17 from 154.11.98.17 (154.11.0.71)
Origin IGP, localpref 100, valid, external, best
Dampinfo: penalty 1304, flapped 4 times in 00:14:31
route-views.ab>show bgp paths 47102
Address Hash Refcount Metric Path
0x666C2980 2421 0 0 852 3257 4436 23498 47102 47102 i
route-views.ab>sh ip bgp 199.xxx.xxx.0
BGP routing table entry for 199.xxx.xxx.0/24, version 82108513
Bestpath Modifiers: deterministic-med
Paths: (1 available, best #1)
Not advertised to any peer
852 3257 4436 23498 47102 47102
154.11.98.17 from 154.11.98.17 (154.11.0.71)
Origin IGP, localpref 100, valid, external, best
Dampinfo: penalty 1304, flapped 4 times in 00:14:31
Public IP Address
- http://www.whatismyip.com/
- http://whatismyipaddress.com/
- Google "what is my ip".
- https://censys.io - Check real ip for Internet Server.
Online Diagram Drawing Sites
- https://www.draw.io/ : it supports to save diagram to all kinds of Internet online drivers. So far, I found it is best to make network diagram. It is completely free to use for any purpose, there is no premium pay-for functionality, watermarking, or other limitations. You own the content you produce with draw.io and may use it for any purpose, including commercially.
- Gliffy :After trial, it is still free to use, but not able to create a new diagram. Existing diagrams will still be kept for editing. Gliffy marks all diagrams as public when a trial expires. Any diagrams created would remain in the account. Diagrams always remain in the account regardless of the status. Gliffy never moves or deletes diagrams. Free account have a limit of 2MB or 5 diagrams, but usually it is enough since you export to gliffy format to import it later.
- Lucid Chart. It can import /export visio format file. Free account will limit complexity to only 60 objects, three active documents, 25mb of Storage, not able to edit imported visio files, etc.
- http://asciiflow.com/
- SmartDraw : provides desktop version, not free. For Cloud , trial for only 7 days, no free usage.
- https://cloudcraft.co/ : Best for AWS diagrams. It also gives you a budget number for your AWS infrastructure. Please check this post.
Snmp tools
- http://www.alertra.com/articles/spotcheck_info/ Spot Check™ provides an easy way to demonstrate how we check from multiple locations and is also a good way to assess the current status of a Web server. The text or other data specified by the URL is loaded according to RFC 2616 (HTTP/1.1). Both HTTP and HTTPS (SSL over HTTP) protocols are supported.
- http://www.sslshopper.com/ssl-checker.html
- http://achecker.ca/checker/index.php
- http://www.webpagetest.org/
- https://www.browserling.com/ - Test website using different platform and broswer version.
Email Diagnostic Tools
- http://mxtoolbox.com/
- hmailserver - is a free, open source, e-mail server for Microsoft Windows. It's used by Internet service providers, companies, governments, schools and enthusiasts in all parts of the world.
Proxy Sites
Remote Support / Online Meeting
- https://zoom.us/
- http://www.packetix.net/en/secure/install/
- Teamviewer
- Ammyy Admin
- Sunlogin
- join.me
- Cisco WebEx
- http://www.spreed.com/
- http://vyew.com/
Remote (SSH / Telnet) Access Tools
- PuTTY: a free telnet/ssh client - chiark home page
- SecureCRT from Vandyke
- Poderosa from SourceForge
- More from http://alternativeto.net/software/securecrt/
- MobaXterm - Free for Home Edition - Portable version available.
NTP Server
TCP/UDP Tools
- TCPView is a Windows program that will show you detailed listings of all TCP and UDP endpoints on your system, including the local and remote addresses and state of TCP connections.
- The Process Explorer display details your computer's running processes in a more visual representation than the standard Windows Task Manager.
- RINETD - Redirects TCP connections from one IP address and port to another.
Network Management
Log Management (Security Information and Event Management - SIEM)
- IBM QRada SIEM, Juniper STRM (Rebanded from QRadar) - IBM QRadar Security Intelligence Smarter threat detection for smarter threats. IBM® QRadar® Security Information and Event Management (SIEM) empowers your security analyst to detect anomalies, uncover advanced threats and remove false positives in real-time. By consolidating log events and network flow data from thousands of devices, endpoints and applications distributed throughout your network, QRadar accelerates incident analysis and remediation. QRadar SIEM is available on premises and in a cloud environment.
- Micro Focus (Former HP) ArcSight ESM Solution - ArcSight ESM (Enterprise Security Management) collects security log data from an enterprise's security technologies, operating systems, applications and other log sources, and analyzes that data for signs of compromise, attacks or other malicious activity. If something malicious is detected, the product acts accordingly by generating alerts to security administrators or initiating an automated response to stop the malicious activity.
- Syslog Collector - Solarwinds Kiwi Syslog , Juniper STRM (Rebanded from Qradar), IBM QRada SIEM
- TFTPD32 and 3cDaemon - Both has a internal Syslog Server feature.
- LOGalyze
- LOGStorm -My post: Installation Steps of LOG Storm Free Virtual SIEM Appliance
- Loggly & Papertrail from Solarwinds Cloud Solution
Configuration Management -
- Configuration Backup / Restoration :Infroblox NetMRI, Tripwire Enterprise, rancid, Solarwinds NCM
- Configuration Compliance Check - Infroblox NetMRI, Tripwire Enterprise,
- Network Change Automation - various reporting scripts, Infroblox NetMRI, Tripwire Enterprise,
System Image Management - File Transferring
- Tftp Server - Solarwinds Free TFTP Server, PumpKIN, Tftpd32
- FTP Server - Quick 'n Easy FTP Server - Pablo Software Solutions
- SFTP/SCP Server - Solarwinds Free SFTP/SCP Server,
- SSH Client - Putty, SecureCRT
- FTP/SFTP Client - WinSCP
Network Documentation
- SharePoint
- Automated Data Center Infrastructure Management - Device42
- Wiki : Dokuwiki
- Other options: DocuSnap, Graphical Networks - netTerrain, NetBrain, RackTables
Network Access Control
- Radius - TekRADIUS
- Tacacs+ - Cisco ACS, Tacacs+
Network Performance Monitoring
- Bandwidth Monitoring: PRTG, Inforblox NetMRI, Solarwinds NPM
- Device Health Monitoring from Internal: PRTG, Solarwinds NPM
- Flow Collector: PRTG, Solarwinds NPM
- a netflow collector with a web frontend (nfsen, or the flowview cacti plugin)
- a cacti or equivalent service to track/graph bandwidth usage on every trunk, WAN and Internet Access circuits, IP SLAs, Smokepings, ...
Lab Environment
- ESXi
- GNS3
- UNetLab (EVE-NG)
- Cisco VIRL - Cisco Virtual Internet Routing LAB
- Docker Lab - https://labs.play-with-docker.com/
Wireless
- Fluke Networks - AirCheck Wi-Fi Tester
- Cisco WLC
- HP Aruba
- Ubiquiti Unifi
Before you click away to do some heavy network security reading, please leave a comment and share your favorite network and security tools so that I can add them to my list!
Hi,
ReplyDeletegood tools mentioned here. Could you please fix the link to Meinberg NTP, there is some gibberish at the end of the linktext: ntp.html_RA&sig2=ovxYla8mzzDEHx7UN_HOlw
thx
This comment has been removed by a blog administrator.
ReplyDelete