|
|
|
|
|
by hnbear
571 days ago
|
|
Typically not a literal pcap. Not just wireshsrk running persistently everywhere. There are systems you can buy (eg by Pico) that you mirror all traffic to and they store it, index it, and have pre-configured parsers for a lot of protocols to make querying easier. Think Splunk/ELK for network traffic by packet. |
|