Network Traffic Collection

2012-02-23 Thread Maverick
Hello, I am trying to collect traffic traffic from pcap file and store it in a database but really confused how to organize it. Should I organize it on connection basis/ flow basis or IP basis. It might be an effort to write a customized traffic analysis tool like wireshark with only required fun

Re: Network Traffic Collection

2012-02-23 Thread Maverick
On 2012-02-23 21:11 , Maverick wrote: >> Hello, >> >> I am trying to collect traffic traffic from pcap file and store it in >> a database but really confused how to organize it. Should I organize >> it on connection basis/ flow basis or IP basis. >> >> It mig

Re: Network Traffic Collection

2012-02-25 Thread Maverick
Thanks Mukom for the wonderful guide, this is really helpful. I have few questions about ntop though. How can I get access to the log files generated by ntop and do my own parsing rather than looking for webbased results that are generated. Are there any programs available that do parsing of ntops

Re: Whitelist of update servers

2012-03-12 Thread Maverick
so that it could be used as a whitelist. On Mon, Mar 12, 2012 at 4:30 PM, Keegan Holley wrote: > > 2012/3/12 Maverick >> >> Is there a whitelist that applications have to talk to in order to >> update themselves? >> > sometimes >

Network Storage

2012-04-12 Thread Maverick
Hello Everyone, Can you please comment on what is best solution for storing network traffic. We have been graciously granted access by our network administrator to capture traffic but the one Tera byte disk space is no match with the data that we are seeing, so it fills up quickly. We can't get ad

Re: Network Storage

2012-04-12 Thread Maverick
tware, etc). See the -s option > in tcpdump man page for info. > > Good luck, > Mike > > On Thu, 2012-04-12 at 16:25 -0400, Maverick wrote: >> Hello Everyone, >> >> Can you please comment on what is best solution for storing network >> traffic. We have been gra