nanog mailing list archives

Re: analyse tcpdump output


From: Payam <payam () bhsecurity com>
Date: Mon, 27 Nov 2006 11:33:12 -0800


Hey Everyone,

I've noticed an increased interest for Panoptis so I thought id send this email out: Panoptis has been updated so that it compiles/runs with newer systems. It works on Debian Sarge for sure, should do the same on any system with GCC 3.3.5 and CommonC++2 1.5.3 at the very least. It is still rough around the edges and no new features; Just an update to get it working.

http://panoptis.sourceforge.net/

Cheers,
--Payam



Jason Chambers wrote:

On Nov 25, 2006, at 6:17 AM, Jason Chambers wrote:

You might also look at "softflowd" [1] or similar tool to export netflow records from whatever box your using TCPDUMP to capture data.

Of course exporting flow records from routers is preferable..

--Jason



Current thread: