applications/system

silk-rwflowpack - SiLK Toolset: The Packer

Website: http://tools.netsa.cert.org/silk/
License: GPLv2
Vendor: CERT Network Situational Awareness <netsa-help@cert.org>
Description:
SiLK, the System for Internet-Level Knowledge, is a collection of
traffic analysis tools developed by the CERT Network Situational
Awareness Team (CERT NetSA) to facilitate security analysis of large
networks. The SiLK tool suite supports the efficient collection,
storage and analysis of network flow data, enabling network security
analysts to rapidly query large historical traffic data sets. SiLK is
ideally suited for analyzing traffic on the backbone or border of a
large, distributed enterprise or mid-sized ISP.

The silk-rwflowpack package converts NetFlow v5 or IPFIX (Internet
Protocol Flow Information eXport) data to the SiLK Flow record format,
categorizes each flow (e.g., as incoming or outgoing), and stores the
data in binary flat files within a directory tree, with one file per
hour-category-sensor tuple.  Use the tools from the silk-analysis
package to query this data.  rwflowpack may capture the data itself,
or it may process files that have been created by flowcap (see the
silk-flowcap package).

Packages

silk-rwflowpack-3.11.0.1-2.fc19.i686 [114 KiB] Changelog by Lawrence Rogers (2015-10-08):
* Release 3.11.0.1-1/2
	3.11.0.1
		Fix linking issue on Ubuntu when PySiLK support is enabled.
	3.11.0
		Allow rwsiteinfo to report on date ranges of files in a SiLK repository.
		Provide a way to set the default textual timestamp format and timezone from the environment.
		Provide a way to set the default textual IP format from the environment.
		Compile the PySiLK plug-in into the tools that can use it.
		Remove support for fixbuf releases prior to libfixbuf-1.6.0.
		Make additional changes and bug fixes.
silk-rwflowpack-3.10.2-6.fc19.i686 [113 KiB] Changelog by Lawrence Rogers (2015-09-11):
* Release 3.10.2-5/6
	Rebuilt removing --enable-localtime configure switch.
silk-rwflowpack-3.10.2-4.fc19.i686 [113 KiB] Changelog by Lawrence Rogers (2015-07-06):
* Release 3.10.2-3/4
	Rebuild for libfixbuf-1.7.0.
silk-rwflowpack-3.10.2-2.fc19.i686 [113 KiB] Changelog by Lawrence Rogers (2015-05-21):
* Release 3.10.2-1/2
	Remove support for fixbuf releases prior to libfixbuf-1.4.0.
	Fix several bugs related to IPv6 addresses.
silk-rwflowpack-3.10.1-2.fc19.i686 [113 KiB] Changelog by Lawrence Rogers (2015-02-26):
* Release 3.10.1-1/2
	rwstats and rwuniq
		Change how rwstats and rwuniq use temporary files when distinct counts are being computed to fix the issue where the tool
		  would sometimes exit with "Error merging values from temporary file".
		Use compression when writing to temporary files.
	rwsort, rwcombine, and rwdedupe
		Use compression when writing to temporary files.
	rwappend
		Fix a bug that could cause rwappend to remove /dev/null when run as root.
	flowcap
		Allow accept-from-host in sensor.conf to take multiple arguments.
	rwflowpack
		Allow accept-from-host in sensor.conf to take multiple arguments.
		Fix a potential crash when using --input-mode=respool and rwflowpack runs out of file descriptors.
	Building
		Fix a bug in the "Requires:" line of the generated silk.spec file when multiple optional dependencies are not available.
		Do not install rwscanquery when configure fails to find Perl's DBI module.
silk-rwflowpack-3.10.0-2.fc19.i686 [112 KiB] Changelog by Lawrence Rogers (2014-12-18):
* Release 3.10.0-1/2
	Important bug fixes in rwfilter and rwsetmember.
	rwflowpack can categorize flow records using an IPset.
	Several changes to logging in rwflowpack and flowcap, including a new default value.
	Additional changes and bug fixes.
silk-rwflowpack-3.9.0-10.fc19.i686 [109 KiB] Changelog by Lawrence Rogers (2014-12-10):
* Release 3.9.0-9/10
	Rebuild for libfixbuf-1.6.2.
silk-rwflowpack-3.9.0-8.fc19.i686 [109 KiB] Changelog by Lawrence Rogers (2014-10-15):
* Release 3.9.0-7/8
	Rebuild for libfixbuf-1.6.1.

Listing created by Repoview-0.6.6-1.el6