Dan Craciun
asked on
Sflow analyzer/alerter
I have several sflow-capable switches and I would like to be able to get live and historical data on traffic.
Requirements:
- must run on Linux
- has alerting capabilities for DDOS attacks (email or SNMP)
- has an easy to use reporting tool for top destinations, most bandwidth used by IP or source, etc.
- trend analysis would be nice, if not at least capable to store the data in a database so I can extract the data.
Right now I'm trying out Sflow Trend, but I'm not impressed.
Please post if you have experience with the solution you recommend. If you found it via a web search... I can use Google too :)
Thank you.
Requirements:
- must run on Linux
- has alerting capabilities for DDOS attacks (email or SNMP)
- has an easy to use reporting tool for top destinations, most bandwidth used by IP or source, etc.
- trend analysis would be nice, if not at least capable to store the data in a database so I can extract the data.
Right now I'm trying out Sflow Trend, but I'm not impressed.
Please post if you have experience with the solution you recommend. If you found it via a web search... I can use Google too :)
Thank you.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Yes, you would need nprobe to work with sflow with ntopng.
ASKER
Reading the ntop.org site, I'm confused: I need both ntopng and nprobe?