Security Basics mailing list archives
Re: netflow tools
From: s b <skullrockz () yahoo com>
Date: Sat, 16 Oct 2004 01:03:04 -0700 (PDT)
Hi Thanks Mike they were useful articles on netflow. Is anyone aware of any tool (pref open source) that collects the data into a backend database. What we are trying to do is try and collate netflow data of several routers in different locations. Thus we want to filter out only selected fields of data to be able to observe trends in them. Regards skullrockz --- Mike <securitybasics () infinity77 net> wrote:
Thanks Kelly, those articles on the securityfocus site definitely provided some useful information. I found 2 others sites I have found to be very good for making the most out of flow-tools, I just wanted to share them with the group.
http://www.giac.org/practical/GSEC/Matthew_Olney_GSEC.pdf
http://www.linuxgeek.org/netflow-howto.phpOn Thu, 7 Oct 2004, Mike wrote:I mean, I already have the data being exportedto a server with flowtoolsbut I'm looking for more information about usingflowtools to make it moreinformative.How about the recent Netflow article series wepublished on SecurityFocus,written by Yimming Gong? It's focused on gettingmeaningful information byfiltering the data. Detecting Worms and Abnormal Activities withNetFlow, Part 1http://www.securityfocus.com/infocus/1796 Detecting Worms and Abnormal Activities withNetFlow, Part 2http://www.securityfocus.com/infocus/1802 If you're able to find a better set of articlesthan these, includingsomething in more detail, please let us know as Isee opportunity for usto publish more articles on this topic.
__________________________________ Do you Yahoo!? Y! Messenger - Communicate in real time. Download now. http://messenger.yahoo.com
Current thread:
- netflow tools Mike (Oct 07)
- Re: netflow tools Kelly Martin (Oct 07)
- Re: netflow tools Mike (Oct 12)
- Re: netflow tools s b (Oct 18)
- Re: netflow tools Mike (Oct 12)
- Re: netflow tools Kelly Martin (Oct 07)