[ale] NetFlow and Linux

krwatson at cc.gatech.edu krwatson at cc.gatech.edu
Thu Dec 11 09:06:31 EST 2008


> -----Original Message-----
> From: ale-bounces at ale.org [mailto:ale-bounces at ale.org] On Behalf Of
> prozaconstilts at gmail.com
> Sent: Wednesday, December 10, 2008 13:53
> To: Christoper Fowler; ale at ale.org
> Subject: Re: [ale] NetFlow and Linux
>
> So, do you want a linux machine to generate Netflow statistics, and then
> collect them on that same machine for analysis, or do you want to use a
> linux machine to collect Netflows exported from a router?
>
> If you want to generate Netflows on a Linux box, you could take a look at
> Ipt-netflow, an iptables module for generating netflow. I've personally
> never used it, but a cursory glance at google got it:
>
> http://sourceforge.net/projects/ipt-netflow/
>
> On the other hand, there's a ton of software for collecting netflows. Try
> nfsen/nfdump:
>
> http://nfsen.sourceforge.net/
>
> Adam
>
>
> On Dec 10, 2008 10:07am, Christoper Fowler <cfowler at outpostsentinel.com>
> wrote:
> > Anyone doing NetFlow in Linux?  I want to gather statistics from
> >
> > Linux directly on its interfaces.
> >
> >
> >
> > Chris
> >


We are using nfsen here. It works great. I'm still working on getting the reports formatted the way I want but that's just a matter of tweaking/post processing.

keith

--

Keith R. Watson                        Georgia Institute of Technology
Systems Support Specialist IV          College of Computing
keith.watson at cc.gatech.edu             801 Atlantic Drive NW
(404) 385-7401                         Atlanta, GA  30332-0280



More information about the Ale mailing list