menu
techminis

A naukri.com initiative

google-web-stories
source image

Medium

1w

read

169

img
dot

Image Credit: Medium

GRE Tunnels and Arkime (short

  • The author, a mid-level Info Sec analyst, discusses their struggle with setting up traffic mirroring in Arkime (Moloch).
  • They wanted a simpler solution to capture 'comms' from hosts on the same subnet without having separate interfaces on each subnet.
  • After some research, the author discovered GRE Tunneling (Generic Routing Encapsulation) as a way to achieve their goal.
  • The author explains the steps they took to set up a GRE tunnel between the high-value system and Arkime, allowing traffic capture on the same subnet.

Read Full Article

like

10 Likes

For uninterrupted reading, download the app