applications/system

silk-flowcap - SiLK Toolset: Remote Flow Collection

Website: http://tools.netsa.cert.org/silk/
License: GPLv2
Vendor: CERT Network Situational Awareness <netsa-help@cert.org>
Description:
SiLK, the System for Internet-Level Knowledge, is a collection of
traffic analysis tools developed by the CERT Network Situational
Awareness Team (CERT NetSA) to facilitate security analysis of large
networks. The SiLK tool suite supports the efficient collection,
storage and analysis of network flow data, enabling network security
analysts to rapidly query large historical traffic data sets. SiLK is
ideally suited for analyzing traffic on the backbone or border of a
large, distributed enterprise or mid-sized ISP.

The silk-flowcap package contains flowcap, a daemon to capture NetFlow
v5 or IPFIX flows (Internet Protocol Flow Information eXport), to
store the data temporarily in files on its local disk, and to forward
these files over the network to a machine where rwflowpack processes
the data.  flowcap is typically used with an rwsender-rwreceiver pair
to move the files across the network.

Packages

silk-flowcap-3.7.1-1.fc15.i686 [35 KiB] Changelog by Lawrence Rogers (2013-05-30):
* Release 3.7.1-1
	rwpmaplookup enhancement
		Add --ipset-files switch that supports using IPsets to query prefix maps.
	rwdedupe bug fix
		Fix a crash that would occur when using --xargs with an empty list of files.
	rwsort bug fix
		Create a valid SiLK Flow file when using --xargs with an empty list of files.
	rwcut bug fix
		Print the title line when using --xargs with an empty list of files.
	rwrecgenerator bug fix
		Fix a bug when using --sensor-prefix-map that would set either the source or destination address to a random value.
	Building
		Fix a small issue in the silk.spec file when the dist RPM macro was not defined.
silk-flowcap-2.4.7-2.fc15.i386 [32 KiB] Changelog by Lawrence Rogers (2012-03-29):
* Release 2.4.7-2
	Now uses adns

Listing created by Repoview-0.6.5-1.el5