How to Configure WinPcap/Npcap Traffic Monitoring - Select a Network Adapter for Protocol Protection
RdpGuard
Intrusion prevention system for your Windows Server
 

Traffic Monitoring via WinPcap/Npcap

RdpGuard uses WinPcap/Npcap to capture network traffic for protocols that support traffic monitoring. It is the recommended alternative to Raw Sockets.

Choose the network adapter that carries connections to the protected service; RdpGuard monitors the ports configured in that protocol's settings.

Before configuring this method, install WinPcap or Npcap on the server. For Npcap, use WinPcap API-compatible Mode. After installation, restart the RdpGuard service through Tools, RdpGuard Service, Restart in RdpGuard Dashboard.

  1. Run RdpGuard Dashboard as administrator and open the protocol's settings under Monitored protocols. Enable protection and select Traffic if the protocol offers a choice between logs and traffic monitoring. Select WinPcap/Npcap (recommended), then click its Configure... link.

    The WinPcap/Npcap Settings dialog will open:

    WinPcap/Npcap Settings with an Ethernet adapter selected and Hide irrelevant adapters enabled
    WinPcap/Npcap Settings with example network adapters.
  2. Select the Ethernet adapter used by clients to reach the protected service. For a virtual machine, choose the guest's adapter carrying that traffic. You can select one adapter per protocol.

    Hide irrelevant adapters filters out inactive, loopback and some virtual adapters. Clear it if the adapter you need is missing from the list. Wireless adapters are not listed even with this option cleared.

  3. Click OK to confirm the adapter, then click Save in the protocol's settings to apply the changes.

If the list does not load, check that RdpGuard Dashboard is connected to the service and follow any installation or Refresh prompt shown in the dialog. For capture errors, open View, Show event log. After adding or replacing a network adapter, restart the RdpGuard service and reselect the adapter in the protocol's settings.

RdpGuard 10.4.1 Free Trial

RdpGuard protects:

Our customers say

"This sotware is really great. It's a relief. Because my server is constantly under attack. Thanks RdpGuard" - Joaquim De Sousa Marques

"Nice product. I used to implement something similiar in a low-tech and cumbersome manner via a script called TSBlock (not mine). This makes it much easier and is well worth the pricetag for SMB's." - J. Johnson

"Absolutely amazed at your product. We are a church in the North Dallas area, and I discovered this morning multiple failed logon attempts via our Remote Access Server. A friend suggested your product, so I immediately downloaded the trial. It had a list of about five blocked IP addresses in minutes, and that was enough to lead me to push the BUY button. Over the past 10-15 minutes the list is now about thirty with at least a third being international attempts to break into our system. Thanks for a great product. You may have just saved us much grief." - John Hallford

"Love the software. RDP on our Windows servers is just ridiculous. We would block it in the router but we have lots of old-time customers that would have issues." - Scott Hirsch

"Love the software! Makes it easier than tailoring VB Scripts!!" - Nick Brennan

"It's a great product - really stopping those RDP attackers :-)" - Dave, UK

"First of all: Your application is very (!!!) useful and I like it very much securing my 2012 R2 server. RdpGuard is the best solution, I found on the market and after 10 minutes of testing it I ordered the fully-featured version. :-)" - Carsten Baltes

Our Other Products
Copyright © 2012-2026 Netsdk Software FZE. All rights reserved.  Terms of Use.  Privacy Policy.