Networking Forums

Networking Forums > Computer Networking > Linux Networking > Looking for traffic analysis/monitoring tool

Reply
Thread Tools Display Modes

Looking for traffic analysis/monitoring tool

 
 
KR
Guest
Posts: n/a

 
      04-08-2006, 01:11 PM
I've just installed RRDTool/Cacti on a server and set it up to fetch
interface statistics (via SNMP) from a Linux-based router, and what can
I say; it rocks. However, the available SNMP statistics are a bit limited.

I'd like to see how much traffic is coming from and going to the
different subnets behind the router. I see that Cacti can use scripts to
collect data, and that packets can be classified and counted with
user-defined chains in iptables, but Cacti is not (and can't be)
installed on the router itself.

What is the best way to collect the data, and how do I get it to Cacti?
(Or am I using the wrong tool for the job?)
 
Reply With Quote
 
 
 
 
hakim.st@web.de
Guest
Posts: n/a

 
      04-08-2006, 01:43 PM
iftop
sniffit
ntop
ethereal

bye...

 
Reply With Quote
 
Michael Heiming
Guest
Posts: n/a

 
      04-08-2006, 01:44 PM
In comp.os.linux.networking KR <(E-Mail Removed)>:
> I've just installed RRDTool/Cacti on a server and set it up to fetch
> interface statistics (via SNMP) from a Linux-based router, and what can
> I say; it rocks. However, the available SNMP statistics are a bit limited.


> I'd like to see how much traffic is coming from and going to the
> different subnets behind the router. I see that Cacti can use scripts to
> collect data, and that packets can be classified and counted with
> user-defined chains in iptables, but Cacti is not (and can't be)
> installed on the router itself.


> What is the best way to collect the data, and how do I get it to Cacti?
> (Or am I using the wrong tool for the job?)


While those things can be done with mrtg/rrdtool, it'd be a hell
lot easier if you just run ntop (www.ntop.org) in webmode for
colorful pictures.

Good luck

--
Michael Heiming (X-PGP-Sig > GPG-Key ID: EDD27B94)
mail: echo (E-Mail Removed) | perl -pe 'y/a-z/n-za-m/'
#bofh excuse 385: Dyslexics retyping hosts file on servers
 
Reply With Quote
 
KR
Guest
Posts: n/a

 
      04-08-2006, 01:54 PM
(E-Mail Removed) wrote:

> iftop
> sniffit
> ntop
> ethereal


As far as I can see, none those can do what I asked. But thanks anyway.
 
Reply With Quote
 
KR
Guest
Posts: n/a

 
      04-08-2006, 01:57 PM
Michael Heiming wrote:
>
> While those things can be done with mrtg/rrdtool, it'd be a hell
> lot easier if you just run ntop (www.ntop.org) in webmode for
> colorful pictures.


I'm a little short on CPU on the router; it has 26 interfaces and
already runs a caching DNS server. But you're right, ntop does display
some really nice graphs.
 
Reply With Quote
 
sal paradise
Guest
Posts: n/a

 
      04-08-2006, 04:59 PM
You can all look into a netflow collector. the onlamp website has a
great tutorial on how to set it up. I think is probably what you are
looking for.

http://www.onlamp.com/pub/a/bsd/2005...ns.html?page=1

 
Reply With Quote
 
sal paradise
Guest
Posts: n/a

 
      04-08-2006, 05:03 PM
BTW, here is another page on the things you can do with flow records:

http://www.onlamp.com/pub/a/bsd/2005...y_Daemons.html

 
Reply With Quote
 
KR
Guest
Posts: n/a

 
      04-08-2006, 11:45 PM
sal paradise wrote:

> BTW, here is another page on the things you can do with flow records:
>
> http://www.onlamp.com/pub/a/bsd/2005...y_Daemons.html


I've had a quick look at the links, and NetFlow seems to be just what
I'm looking for. To my surprise, I also learned that lots of network
equipment (including Cisco routers) can export NetFlow data.
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Network Analysis / Diagramming Tool gary0371 Windows Networking 4 11-12-2007 07:16 PM
Network Analysis and monitoring? boe Windows Networking 3 05-11-2007 03:54 AM
Free network traffic monitoring tool Vigi Linux Networking 0 09-07-2006 12:11 AM
Traffic monitoring tool. Shashank Khanvilkar Linux Networking 4 06-05-2005 10:34 PM
Followup: Iptables log analysis tool? thrugoodmarshall Linux Networking 1 07-18-2003 02:23 PM



1 2 3 4 5 6 7 8 9 10 11