21. ntop and bandwidthd

ntop and BandwidthD are yet further utilities built on libpcap. Both are more useful for long term monitoring of network traffic as a general policy of looking for suspect packets than for speedy forensics.

21.1. ntop

From the homepage:

ntop is a network traffic probe ... uses a Web browser for the interface... configurable via the browser...

21.2. BandwidthD

From the homepage:

BandwidthD tracks usage of TCP/IP network subnets and builds HTML files with graphs to display utilization. Charts are built by individual IPs, and by default display utilization over 2 day...

...previousup (conts)next...



About this document:

Produced from the SGML: /home/umits/public_html/_unix_security/_reml_grp/diagnostic_forensic_tools.reml
On: 23/10/2005 at 13:29:12
Options: reml2 -i noindex -l long -o html -p multiple