sam_cogan
asked on
Netowork Monitoring and Databases
I haev a need to monitor traffice on my network, to rpovide usage statistics, and monitor certain "heavy" users. Ihave been using winpcap and ethereal to monitor traffic, however this does not do all I want, as I have a need t monitor traffic for a week at a time, which means splitting files as etherreal cannot handle files this big.
What I would like to do is automaticly import all my capture data into a database, access or MYSQL, however the only way I can do this at the moment is to export capture files to CSV files adn then import into access. What I would like to know, is their either a way to log traffic straight to a csv file, for easy import, or another way to get data into a DB straight away, or another program to do this.
I have tried using SNORT to log to MYSQL, but as far as I can tell, I can only get it to write alerts, rather than all traffic, which I need to produce usage reports.
What I would like to do is automaticly import all my capture data into a database, access or MYSQL, however the only way I can do this at the moment is to export capture files to CSV files adn then import into access. What I would like to know, is their either a way to log traffic straight to a csv file, for easy import, or another way to get data into a DB straight away, or another program to do this.
I have tried using SNORT to log to MYSQL, but as far as I can tell, I can only get it to write alerts, rather than all traffic, which I need to produce usage reports.
ASKER
thanks, unfortuanetly I do need to know what the packets are, basicly I need all the info you get in etherreal, but put in a database.
You're talking $$$. Look into NetScout and Fluke.
http://www.netscout.com/products/probes_lan_home.asp
http://www.flukenetworks.com/us/Solutions/Network+Analysis/Overview.htm
http://www.netscout.com/products/probes_lan_home.asp
http://www.flukenetworks.com/us/Solutions/Network+Analysis/Overview.htm
ASKER
I found an application called trafadmin which does this, for a reasonable price.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
http://www.solarwinds.net/Orion/Index.htm