Are there any MS tools that actually allow me to monitor my home network with IDS/IPS?

iqworks Information Quality Works 196 Reputation points
2022-05-11T14:46:21.303+00:00

I am using windows 10 version 10.0.19044.

It was suggested to me that if I used these 3 process tools that I could monitor my network. It seems that
These process tools only monitor the processes running on my computer, kind of like task manager.

I am still trying to find tools for monitoring my home network. I would like an IDS/IPS as well. I tried using WireShark but its not an IDS/IPS.

Thanks for any suggestions or advice

Windows 10 Network
Windows 10 Network
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Network: A group of devices that communicate either wirelessly or via a physical connection.
2,266 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Limitless Technology 39,336 Reputation points
    2022-05-12T15:45:40.743+00:00

    Hello @iqworks Information Quality Works

    Is not clear which tools are you trying to use, but if you refer to Process Explorer or Process Monitor, they are indeed oriented to the analysis of system processes and their activities.

    On the other hand, Microsoft used to had 2 exceptional tools for Network analysis: Network Monitor and Message Analyzer, which unfortunately have been retired after 2019.

    At this moment, for Intrusion Detection IDS, Microsoft recommend the open source tool Suricata. you can read more about it, and how to operate with it here:
    https://learn.microsoft.com/en-us/azure/network-watcher/network-watcher-intrusion-detection-open-source-tools

    Hope this helps with your query,

    ------------

    --If the reply is helpful, please Upvote and Accept as answer--

    0 comments No comments

  2. iqworks Information Quality Works 196 Reputation points
    2022-05-12T16:26:41.333+00:00

    Thanks LT for getting back.

    I tried suricata. But it has no GUI interface. There is a third party toll that seems like it will let suricata work with wireshark. Wireshark could be a GUI for it. But I couldnt get it to work last time, but i will be trying it again.

    I am trying to learn how to monitor my network. I need an IDS/IPS to learn more. I am trying Snort right now. It is an IDS/IPS and works on windows. Not sure yet if it has a
    GUI.
    https://resources.infosecinstitute.com/topic/snort-rules-workshop-part-one/
    “Snort® is an open source network intrusion prevention and detection system (IDS/IPS) developed by Sourcefire. Combining the benefits of signature, protocol, and anomaly-based inspection, Snort is the most widely deployed IDS/IPS technology worldwide. With millions of downloads and nearly 400,000 registered users, Snort has become the de facto standard for IPS.”.

    will keep you posted for the sake of anyone else who are working on network monitoring on windows 10.

    0 comments No comments