lotsa pcap reporting

Harry Hoffman hhoffman at ip-solutions.net
Sun Apr 5 13:30:03 UTC 2015


Hmm, maybe start with defining what you want to report about?

Top talkers, top protocols/ports, open services, DNS info, reconstructed files, etc...

Lots of different tools but it depends on what you want to do.

Cheers,
Harry



On Apr 5, 2015 9:16 AM, Hank Disuko <gourmetcisco at hotmail.com> wrote:
>
> hi nanog folks, 
> i have 7GB of darn pcap data separated into individual 50MB files.  Collected via Wireshark. 
> i need a tool that can slurp in all this data and regurgitate pretty, colourful and management-friendly reports.  Windows or Linux. 
> any suggestions? 
> thanks, 
> Hank     


More information about the NANOG mailing list