I'm trying to learn more about my home network, identifying malicious IPs, looking at packets, in depth threat hunting and looking at protocols and headers, etc....
My questions is, I don't know where to start with trying to capture this and what equipment I need.
At present I have just a simple router/modem that was given to my by my ISP. I guess I need either a tap, or something, or a switch with a SPAN port?
Can someone give me a very basic description of what type of equipment I will need? Nothing too expensive, it's a simple home network. I have a server so can store logs on there.