North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

AW: flow -> web

  • From: tom
  • Date: Mon Feb 06 03:45:16 2006

If one does not wanna use netflow, but ipaccounting, then this is a also a
nice solution...
http://ipacco.sourceforge.net/index.php

tom from munich/germany


-----Ursprüngliche Nachricht-----
Von: [email protected] [mailto:[email protected]] Im Auftrag von
Randy Bush
Gesendet: Montag, 6. Februar 2006 09:25
An: [email protected]
Betreff: Re: flow -> web


folk have asked me to summarize.  so here it goes

"Justin M. Streiner" <[email protected]> and Nicolas Strina
<[email protected]> recommended the nfdump nfsen pair,

    http://nfsen.sourceforge.net
    http://nfdump.sourceforge.net

Chris Kuethe <[email protected]> and Peter Wohlers <[email protected]>
recommended ntop

    http://www.ntop.org/

Peter Wohlers <[email protected]> also recommended Stager

    http://software.uninett.no/stager/?page=docs

Steven Rakick <[email protected]> recommended nSight

    http://www.obtuse.net/software/nsight

Tony Hacche <[email protected]> recommended Crannog's NetFlow Tracker

 
http://www.crannog-software.com/index.php?go=Product.ShowDetail&ProductID=1

Jared Mauch <[email protected]> has a tool to detect and highlight ddos
symptoms, but it does not have per-protocol sexy graphs.  looks very useful
for ddos detection, though

---

i am currently playing with nfsdump/nfsen

randy