Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Ray Van Dolson
On Sun, Dec 06, 2009 at 06:23:01PM -0500, Jake wrote: > On Sun, Dec 6, 2009 at 5:53 PM, Ray Van Dolson wrote: > > > OP wants nfdump[1]. Great tool. The web front-end is called nfsen and is > > a separate package. > > > > Ray > > > > [1] http://nfdump.sourceforge.net/ > > > > > Needs, but mayb

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Alan McKay
> I used to be in love with ntop, but it has shown to be very unstable in the > last few years (memory leaks, crashing, etc. for version in fedora-epel as And here I thought it was just my PC. I finally converted my home PC to Linux last week (cough, cough Ubuntu cough) and one of the first thing

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Jake
On Sun, Dec 6, 2009 at 5:53 PM, Ray Van Dolson wrote: > OP wants nfdump[1]. Great tool. The web front-end is called nfsen and is > a separate package. > > Ray > > [1] http://nfdump.sourceforge.net/ > Needs, but maybe not "wants." :-P I used to be in love with ntop, but it has shown to be ver

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Joseph L. Casale
>OP wants nfdump[1]. Great tool. The web front-end is called nfsen and is a >separate package. Yea, that looks nice, wow... In the meantime while I was waiting for feedback I saw that cacti has a netflow plugin. Given my owner dumped this on me short notice before we shut down for holidays (w

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Timo Schoeler
thus Alan McKay spake: >> Well, netflow is the appropriate technology for this: >> >> http://en.wikipedia.org/wiki/Netflow > > Oh hey, look at that - I had no idea that was a specific thing :-) > > I've seen something like that before - not Netflow obviously - but > I've seen it. Now I'll just

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Alan McKay
> I've seen something like that before - not Netflow obviously - but > I've seen it.   Now I'll just have to remember where :-) Oh, it was the other day when I was looking at Tobi Oetiker's website. And ad on his site for this guy : http://community.zenoss.org/index.jspa I have been meaning to

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Ray Van Dolson
On Sun, Dec 06, 2009 at 11:48:45PM +0100, Timo Schoeler wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > thus Alan McKay spake: > > On Sun, Dec 6, 2009 at 4:39 PM, Joseph L. Casale > > wrote: > >> Anyone got a reco on a package that can collect netflow data and accept > >> user defin

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Alan McKay
> Well, netflow is the appropriate technology for this: > > http://en.wikipedia.org/wiki/Netflow Oh hey, look at that - I had no idea that was a specific thing :-) I've seen something like that before - not Netflow obviously - but I've seen it. Now I'll just have to remember where :-) -- “Do

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Timo Schoeler
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 thus Alan McKay spake: > On Sun, Dec 6, 2009 at 4:39 PM, Joseph L. Casale > wrote: >> Anyone got a reco on a package that can collect netflow data and accept user >> defined queries >> for specific data, like what an ip did every hour for some said i

Re: [CentOS] netflow colelction and analysis

2009-12-06 Thread Alan McKay
On Sun, Dec 6, 2009 at 4:39 PM, Joseph L. Casale wrote: > Anyone got a reco on a package that can collect netflow data and accept user > defined queries > for specific data, like what an ip did every hour for some said interval? well, collecting is pretty easy of course - tcpdump. And you can lo

[CentOS] netflow colelction and analysis

2009-12-06 Thread Joseph L. Casale
Anyone got a reco on a package that can collect netflow data and accept user defined queries for specific data, like what an ip did every hour for some said interval? Thanks! jlc ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/