The argus-clients package provides a set of example client programs that provide extended processng and analytics for argus flow data. These includes providing a processing environment, new processing and analytics, graphing, storage managment, forensics, and reporting tools. For these examples, we use standard sets of argus data.
Ascii to binary data record conversion. |
|
---|---|
Scanner detection and reporting. |
|
Decode captured user data buffers. |
|
Non flow data printing. |
|
High performance argus record filtering. |
|
Time series graphing (rrd-tool based) |
|
Regular expression matching from captured user data. |
|
Frequency distribution analysis for argus data metrics. |
|
IP address inventory reporting |
|
Semantic enhancement / metadata tagging. |
|
Mysql based database utilities. |
|
Print topology information derived from argus data. |
|
Continuous access control policy verification. |
|
Application port usage |
|
Arpwatch application driven using argus data. |
|
User data analysis to determine actual protocol in use. |
|
Enhanced stream block processing. |
|
Argus data conditioning and compression. |
|
Ra client development template for using the argus clients library. |
|
Argus data file time span. |
|
Realtime argus data processing environment (curses based) |
Each of these core programs provide a basic set of features that are needed to get utility from argus based flow data.
Page Last Modified: 14:22:39 EDT 13 Mar 2012 ©Copyright 2000 - 2012 QoSient, LLC. All Rights Reserved.