applications/system

silk-rwflowpack - SiLK Toolset: The Packer

Website: http://tools.netsa.cert.org/silk/
License: GPLv2
Vendor: CERT Network Situational Awareness <netsa-help@cert.org>
Description:
SiLK, the System for Internet-Level Knowledge, is a collection of
traffic analysis tools developed by the CERT Network Situational
Awareness Team (CERT NetSA) to facilitate security analysis of large
networks. The SiLK tool suite supports the efficient collection,
storage and analysis of network flow data, enabling network security
analysts to rapidly query large historical traffic data sets. SiLK is
ideally suited for analyzing traffic on the backbone or border of a
large, distributed enterprise or mid-sized ISP.

The silk-rwflowpack package converts NetFlow v5 or IPFIX (Internet
Protocol Flow Information eXport) data to the SiLK Flow record format,
categorizes each flow (e.g., as incoming or outgoing), and stores the
data in binary flat files within a directory tree, with one file per
hour-category-sensor tuple.  Use the tools from the silk-analysis
package to query this data.  rwflowpack may capture the data itself,
or it may process files that have been created by flowcap (see the
silk-flowcap package).

Packages

silk-rwflowpack-3.8.0-1.fc16.x86_64 [108 KiB] Changelog by Lawrence Rogers (2013-11-21):
* Release 3.8.0-1
	Allow rwpmaplookup to print the range that contains the key
	Improve handling of records from some devices that export NetFlow v9
	Add support for libfixbuf-1.4.0 and remove support for releases prior to libfixbuf-1.2.0
silk-rwflowpack-3.7.2-2.fc16.x86_64 [106 KiB] Changelog by Lawrence Rogers (2013-08-18):
* Release 3.7.2-1
	PySiLK changes
		Add IPSet.is_ipv6() and IPSet.convert() methods.
		Fix a bug when saving an IPv6-IPset that contains only IPv4 addresses.
	IPset bug fixes
		Fix bugs when computing the union or intersection of an IPv4-IPset and an IPv6-IPset that contains only IPv4 addresses.
	rwfilter bug fixes
		Fix a spurious warning when loading an IPset.
		Fix a memory issue during shutdown when an argument to one of the --*cidr switches (--scidr, --dcidr, etc) is mistyped.
	rwflowpack, flowcap bug fixes
		Fix a bug where the daemon failed to read TCP flags contained in a SubTemplateMultiList when reading IPFIX data over the network.
		Fix a memory leak when receiving IPFIX data containing a SubTemplateList or a SubTemplateMultiList.
silk-rwflowpack-3.7.2-1.fc16.x86_64 [106 KiB] Changelog by Lawrence Rogers (2013-08-18):
* Release 3.7.2-1
	PySiLK changes
		Add IPSet.is_ipv6() and IPSet.convert() methods.
		Fix a bug when saving an IPv6-IPset that contains only IPv4 addresses.
	IPset bug fixes
		Fix bugs when computing the union or intersection of an IPv4-IPset and an IPv6-IPset that contains only IPv4 addresses.
	rwfilter bug fixes
		Fix a spurious warning when loading an IPset.
		Fix a memory issue during shutdown when an argument to one of the --*cidr switches (--scidr, --dcidr, etc) is mistyped.
	rwflowpack, flowcap bug fixes
		Fix a bug where the daemon failed to read TCP flags contained in a SubTemplateMultiList when reading IPFIX data over the network.
		Fix a memory leak when receiving IPFIX data containing a SubTemplateList or a SubTemplateMultiList.
silk-rwflowpack-3.7.1-1.fc16.x86_64 [106 KiB] Changelog by Lawrence Rogers (2013-05-30):
* Release 3.7.1-1
	rwpmaplookup enhancement
		Add --ipset-files switch that supports using IPsets to query prefix maps.
	rwdedupe bug fix
		Fix a crash that would occur when using --xargs with an empty list of files.
	rwsort bug fix
		Create a valid SiLK Flow file when using --xargs with an empty list of files.
	rwcut bug fix
		Print the title line when using --xargs with an empty list of files.
	rwrecgenerator bug fix
		Fix a bug when using --sensor-prefix-map that would set either the source or destination address to a random value.
	Building
		Fix a small issue in the silk.spec file when the dist RPM macro was not defined.

Listing created by Repoview-0.6.6-1.el6