| 0 comments ]

This wiki hosts documentation and source code for plugins that can be used with NfSen:

  • NfSen (Netflow Sensor) is a graphical web based front end for the nfdump netflow tools. Learn more at http://nfsen.sf.net
  • Nfdump tools collect and process netflow data on the command line. Learn more at http://nfdump.sf.net
Click on the plugin names below to access documentation, contact authors and submit bugs or functionality requests.
You can also submit a new plugin or a plugin request.

Plugins Available:


SURFmap
Network monitoring tool based on the Google Maps API
  • Download SURFmap
  • Last updated: 2013-08-02
  • Compatibility: Nfsen-1.3.6
  • Dependencies: -

SSHCure
SSH Intrusion Detection System
  • Download SSHCure
  • Last updated: 2013-06-09
  • Compatibility: Nfsen-1.3.6
  • Dependencies: -

Nfsight
Network visualization and client/server detection tool
  • Download Nfsight
  • Last updated: 2011-09-08
  • Compatibility: Nfsen-1.3.4 and later
  • Dependencies: MySQL

PortTracker
Breaks down flow activity reports per port
  • This plugin is provided with Nfsen in the contrib directory. Download Nfsen 1.3.3
  • Last updated: 2010-05-28
  • Compatibility: Nfsen-1.3.3
  • Dependencies: -

Botnet
Sends alerts when botnet related activity is detected based on a list of known botnet C&C

Events
Processes and stores alerts produced by the Botnet plugin
  • Download Events 0.3
  • Last updated: 2008-11-18
  • Compatibility: Nfsen-1.3.1
  • Dependencies: MySQL, Perl modules DBI, DBD::mysql and PHP::Serialization

Events-mail
Sends alerts collected from Events by email

0 comments

Post a Comment