ElastiFlow
AS-Stats v1.6 (2014-09-12)
Our great sponsors
ElastiFlow | AS-Stats v1.6 (2014-09-12) | |
---|---|---|
31 | 2 | |
2,311 | 193 | |
- | - | |
4.1 | 1.4 | |
over 2 years ago | about 1 year ago | |
Shell | Perl | |
GNU General Public License v3.0 or later | BSD 2-clause "Simplified" License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ElastiFlow
- NETFLOW .. NTOPNG how to ?
- Seaching for How To install Elastiflow
-
Into my 6th year of this ... hobby?
As a matter of fact, I played with the now deprecated Elastiflow, however I couldn't get my head around managing ELK, scrapped it pretty quickly, and Netflow did not reach the meaningful stage at that time. OpenNMS looks pretty massive that I can't run it at the moment. Thanks for suggestion though.
-
Threat detection
One thing I ran for a while was security onion and utilized port mirroring to mirror the uplink port from my primary switch to my LAN on my router, so I was catching anything coming into/out of my network destined for internet. I've also used ElastiFlow ( https://github.com/robcowart/elastiflow ) which is absolutely phenomenal and awesome, I did the same and it provides some great data. You could also leverage IntelOwl ( https://github.com/intelowlproject/IntelOwl ) , one thing I have added to all my VMs is a OSSEC agent, Wazuh to be specific which is free ( https://github.com/wazuh/wazuh ) and while I am not using it to its full potential such as monitoring file deletions/modifications etc it is a powerful tool.
- Linux Network Traffic Monitor
-
Monitoring all inter-VLAN traffic on 9410 switch?
I'd recommend taking a look at Elastiflow (link is to the legacy version, I haven't used the pay structured tier version that replaced it) as a flow collector. Do it in a docker container, dump netflow to it, and use a sample rate that doesn't fill your collector box with flow packets after a single day. Depends on your traffic rates. We use 1 out of 250 for our rate.
-
Netflow bit rate and Interface Bit Rate
https://github.com/robcowart/elastiflow/issues/201 https://github.com/robcowart/elastiflow/issues/52
- Network Traffic visualization
- ElastiFlow help
-
Installation help, almost there.
Where as the newer version is (https://github.com/robcowart/elastiflow/) is called:
AS-Stats v1.6 (2014-09-12)
-
IT Pro Tuesday #172 - Vulnerability Scanner, Practical Joke, Cabling Tutorial & More
AS-Stats is a simple tool that uses Perl scripts to generate per-AS traffic graphs for one or more routers based on the NetFlow/sFlow records. Kindly suggested by sbbr.
- Network Traffic visualization
What are some alternatives?
ntopng - Web-based Traffic and Security Network Traffic Monitoring
Netdata - The open-source observability platform everyone needs
pfelk - pfSense/OPNsense + Elastic Stack
SWMP - Server Web Monitor Page - A responsive, eye-pleasing Linux server statistics dashboard.
LibreNMS - Community-based GPL-licensed network monitoring system
Adagios - Adagios - Web Based Nagios Configuration
Centreon - Centreon is a network, system and application monitoring tool. Centreon is the only AIOps Platform Providing Holistic Visibility to Complex IT Workflows from Cloud to Edge.
loki - Like Prometheus, but for logs.
Sensu
Wazuh - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
Dash - A beautiful web dashboard for Linux