ipfixcol2
High-performance NetFlow v5/v9 and IPFIX collector (RFC7011) (by CESNET)
nfdump
Netflow processing tools (by phaag)
ipfixcol2 | nfdump | |
---|---|---|
1 | 4 | |
115 | 741 | |
1.7% | - | |
7.3 | 9.6 | |
about 1 month ago | 5 days ago | |
C | C | |
GNU General Public License v3.0 or later | GNU General Public License v3.0 or later |
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ipfixcol2
Posts with mentions or reviews of ipfixcol2.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2022-11-06.
-
Which open source netflow collectors are you using?
Personally a big fan of ipfixcol2, which allows me to dump collected packets straight into a queue, and allows me to ingest wonky custom fields that some of my vendors insist on using and not documenting.
nfdump
Posts with mentions or reviews of nfdump.
We have used some of these posts to build our list of alternatives
and similar projects. The last one was on 2023-03-24.
-
Netflow collector software for lab purpose
https://github.com/phaag/nfdump its an "simple" collector. It is just an CLI tool. If you can utilize the cli it's a monster to analyze the raw data. if you need a fancy gui then this is the wrong collector.
-
real-time analytics / traffic capture on MX204
Try the open source nfdump (this should also be a package in Debian/Ubuntu at least). You would configure 'nfcapd' to receive netflow data, then process it with 'nfdump' which is a commandline tool for obtaining statistics on traffic (e.g. top N IPs for bytes/flows, etc).
- Cisco Netflow Help
-
netflow analyzier free tools
For the quick look nfdump https://github.com/phaag/nfdump is in use. Since it is a CLI tool, it is not really suitable for managers.
What are some alternatives?
When comparing ipfixcol2 and nfdump you can also consider the following projects:
ipt-netflow - Netflow iptables module for Linux kernel (official)
ntopng - Web-based Traffic and Security Network Traffic Monitoring
xenoeye - Lightweight Netflow/IPFIX collector
pmacct - pmacct is a small set of multi-purpose passive network monitoring tools [NetFlow IPFIX sFlow libpcap BGP BMP RPKI IGP Streaming Telemetry].
akvorado - Flow collector, enricher and visualizer
softflowd - softflowd: A flow-based network traffic analyser capable of Cisco NetFlow data export software.
silk - Silk File Reader
goflow - The high-scalability sFlow/NetFlow/IPFIX collector used internally at Cloudflare.
flow-pipeline - A set of tools and examples to run a flow-pipeline (sFlow, NetFlow)