GLab / ToMaTo

German-Lab ToMaTo
http://www.tomato-lab.org
32 stars 21 forks source link

Alternative to Cloudshark #1155

Open dswd opened 8 years ago

dswd commented 8 years ago

Since Cloudshark is going to charge for their service we should try to find an alternative.

swuest commented 8 years ago

I was not able to test this, but:

http://pcapr.mudynamics.com/

http://pcapr.mudynamics.com/xtractr - Cloud Tool which analyses and graphically represents pcaps (don't know if this view can be used in an external web service) http://pcapr.mudynamics.com/browse/fields - List of protocols supported by pcapr

dswd commented 8 years ago

I am not sure, I think ntop wants to monitor the network by itself and not just read pcap files

swuest commented 8 years ago

Here are two lists of tools i've found.

https://wiki.wireshark.org/Tools http://forensicswiki.org/wiki/Tools:Network_Forensics

dswd commented 8 years ago

http://www.nbee.org/doku.php?id=netpdl:pdml_specification