Converting from tcpdump to netflow

Eduardo Morras emorras at s21sec.com
Mon Apr 28 10:40:52 UTC 2008


Hello everybody:

    I'm capturing packets from our network using tcpdump. Only 96 
bytes for each packet. Now the sysmaster says that he wants analyze 
the network with netflow graphics. Is there any app that can convert 
from tcpdump/pcap to netflow? We have no router with netflow 
capabilities. Should i restart the packet capture with fprobe or 
similar app? Can be fprobe and tcpdump work in parallel?

Thanks In Advance

------------------------------------------------
Useful Acronyms : UPnP = Universal Plug and Pray 



More information about the freebsd-questions mailing list