Davide Cherubini - PhD Thesis - UniCA Eprints
Davide Cherubini - PhD Thesis - UniCA Eprints
Davide Cherubini - PhD Thesis - UniCA Eprints
You also want an ePaper? Increase the reach of your titles
YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.
5.2 Traffic monitoring• flow-merge - Merge flow files in chronoligical order.• flow-xlate - Perform translations on some flow fields.• flow-expire - Expire flows using the same policy of flow-capture.• flow-header - Display meta information in flow file.• flow-split - Split flow files into smaller files based on size, time, or tags.• flow-print - Display on screen information requested using, for example,flow-cat.Figure 5.4 shows an example of the using flow-print/flow-cat. It is possible to retrieveinformation about the source/destination IP address, the type of protocol,the source/destination port, the dimension and the number of packets constitutingthe flow.Figure 5.4: flow-print example5.2.2.3 FlowScanNetFlow data reports, generated with Flow-Tools, can be managed and displayedalso using different open source instruments that are freely downloadable from33