Softpedia
 


LINUX CATEGORIES:



GLOBAL PAGES >>
NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Linux Kernel 3.9.3 / 3....
  • LibreOffice 3.6.6 / 4.0.3
  • MPlayer 1.1.1
  • systemd 204
  • Arch Linux 2013.05.01
  • Blender 2.67a
  • KDE Software Compilatio...
  • CrunchBang Linux Stable...
  • Elementary OS 0.1 / 0.2...
  • SystemRescueCd 3.6.0
  • Home > Linux > System > Networking

    fprobe 0.4

    Download button

    Downloads: 1,272  View global page NEW!  Tell us about an update
    User Rating:
    Rated by:
    NOT RATED
    0 user(s)
    Developer:

    License / Price:

    Last Updated:

    Category:
    Bogdan Surdu | More programs
    GPL / FREE
    July 5th, 2006, 13:45 GMT
    ROOT / System / Networking

     Read user reviews (0)  Refer to a friend  Subscribe

    fprobe description

    fprobe is a small NetFlow probe which will listen on a network interface.

    fprobe is a small NetFlow probe which will listen on a network interface. It isusing libpcap, aggregate the traffic and export NetFlow V5 datagram to a remote collector for processing. A flow is identified by ip protocol, source ip, source port, destination ip, destination port.
    Right now only ethernet interfaces are supported. Support for more media types (tunnel, ppp etc) will be added in nex versions.

    /fprobe -t IP:PORT [ -i interface ] [ -s scan ] [ expression ]
    -t IP:PORT NetFlow collector address
    -i interface interface to listen for traffic (default eth0)
    -s scan interval in seconds between two flow tables scans (Default: 10)
    -c file file with MAC definitions
    -p don't put the interface in promisc mode
    -b go in background (daemon mode)
    -l file log file name
    expression a bpf expresion to filter traffic (See libpcap/tcpdump)

    For example:
    ./fprobe -i eth2 -t 127.0.0.1:8182

    This will sniff the traffic on interface 'eth2' and will send the NetFlow data to localhost (127.0.0.1) on UDP port 8182.

    Internal flow table is parsed every 'scan' seconds for expired flows which are sent to remote collector.
    What's New in This Release:

    · can handle IP fragments
    · can set the snmp interface ID based on source/destination MAC address
    · fixed uptime in exported flows
    · new hash function for internal storage
    · delay between udp datagrams emited



    Product's homepage

      


    TAGS:

    listen on interface | sniff interface | ethernet sniffer | ethernet | sniffer | debug

    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM