Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What's the cleanest way to monitor your entire network similar to little snitch?


The difference is granularity - inside your computer you know which application is doing it. On a network level you only see which device it is.

Maybe there's something with a central server and an agent installed on every device connecting but I doubt it's as easy and pretty as LS.


Install a private CA root cert on all the machines in your network, and set up a router that's able to MitM TLS sessions to do deep packet inspection. Palo Alto Networks' kit has this kind of capability.


Most enterprise networks do this, but you'll have major issues with IoT devices and devices/apps that do certificate pinning. You'll probably have to put those on your guest network... Assuming you have one.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: