Version 57 (modified by andreu, 12 years ago)

--

renetcol home page

renetcol ( RENATER  NetFlow Collector) is a NetFlow collector under GPL. NetFlow is a technology originally proposed by  Cisco, that is currently under standardization in  IPFIX IETF working group. renetcol works with NetFlow Data Export version 9, which allows to monitor IPv6, Multicast and MPLS flows, in addition to the IPv4 ones.

The main functionnalities of renetcol are:

  • Real-time NetFlow viewer (if you've ever dreamed of using tcpdump on an IP operator backbone, you should test renetcol)
  • RRD accounting for IPv4 subnet (CIDR)
  • RRD accounting for BGP AS number
  • RRD accounting for IPv6 links (new in release 0.0.14)
  • Inter-POP flows Matrix
  • DoS attack detection

Screenshots and graphic examples

  • Web interface here
  • Class of services traffic distribution for an IPv4 prefix: here
  • Real-time flow monitoring: here
  • Examples of different possibility of flow selection: here
  • IPv6 Weathermap of RENATER backbone (with  YANMP):  here

Next features

  • IPv6 accounting for Prefix
  • IPv6 accounting for AS Number
  • New architecture of core: SMP capacity, to reached the million of analysed flows per second on only one hardware.
  • DDoS detection
  • nfcapd format export

White Paper

soon, few documents on how use renetcol in WAN, LAN and security context...

Mailing-list

Subscribe

renetcol in production

HowTo

Author

  • Andreu François-Xavier

Thanks to

  • CERT RENATER (for his daily usage of renetcolGUI)
  • Anthony Fisson (for syslog section and discussions about SMP architecture)
  • Dany Vandromme (CEO) and Franck Simon (CTO until 2010) of RENATER

Attachments