PaulDotCom mailing list archives

[Pauldotcom] Web Traffic Monitoring à la Span Port


From: nbaronian at gmail.com (Nick Baronian)
Date: Wed, 16 Dec 2009 16:18:38 -0500

httpry is pretty cool
http://dumpsterventures.com/jason/httpry/
Needless to say, depending on how much traffic flows thru that span port the
output can get pretty large.

nick

On Wed, Dec 16, 2009 at 1:29 PM, Joe Magee <jmagee at thevigilant.com> wrote:

 Hey Everyone,



I had a quick question, is there any good open source tools that do web
traffic monitoring? (i.e. promiscuous mode eth interface off of a spans
port?) I?m interested in doing some basic monitoring and ideally sending
those logs to a SIEM tool.



I know proxy?s have this logging capability, however I was hoping to be
able to snag it off the wire and possibly answer questions such as: What
sites are my users visiting? How many hours per day are they browsing the
internet?



Thanks in advance!



Joe



*Joe Magee*

*Chief Technology Officer*

Cell +1-617-921-8671

Office +1-201-324-1800 x202



[image: vigilant-logo.jpg]

*securing and enabling dynamic business*

www.thevigilant.com



_______________________________________________
Pauldotcom mailing list
Pauldotcom at mail.pauldotcom.com
http://mail.pauldotcom.com/cgi-bin/mailman/listinfo/pauldotcom
Main Web Site: http://pauldotcom.com

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20091216/5c50b17d/attachment.htm 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: image/jpeg
Size: 1661 bytes
Desc: not available
Url : http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20091216/5c50b17d/attachment.jpeg 


Current thread: