Version 59 (modified by andreu, 12 years ago) |
---|
renetcol home page
renetcol ( RENATER NetFlow Collector) is a NetFlow collector under GPL. NetFlow is a technology originally proposed by Cisco, that is currently under standardization in IPFIX IETF working group. renetcol works with NetFlow Data Export version 9, which allows to monitor IPv6, Multicast and MPLS flows, in addition to the IPv4 ones.
The main functionnalities of renetcol are:
- Real-time NetFlow viewer (if you've ever dreamed of using tcpdump on an IP operator backbone, you should test renetcol)
- RRD accounting for IPv4 subnet (CIDR)
- RRD accounting for BGP AS number
- RRD accounting for IPv6 links (new in release 0.0.14)
- Inter-POP flows Matrix
- DoS attack detection
Screenshots and graphic examples
- Web interface here
- Class of services traffic distribution for an IPv4 prefix: here
- Real-time flow monitoring: here
- Examples of different possibility of flow selection: here
- IPv6 Weathermap of RENATER backbone (with YANMP): here
Next features
- IPv6 accounting for Prefix
- IPv6 accounting for AS Number
- New architecture of core: SMP arch, to reached the million of analysed flows per second on only one hardware.
- DDoS detection
- nfcapd format export
White Paper
soon, few documents on how use renetcol in WAN, LAN and security context...
Mailing-list
Subscriberenetcol in production
HowTo
Links
Author
- Andreu François-Xavier
Thanks to
- CERT RENATER (for his daily usage of renetcolGUI)
- Anthony Fisson (for syslog section and discussions about SMP architecture)
Attachments
-
RENETCOL_Different_USE_CASES.pdf
(119.6 KB) - added by andreu 11 years ago.
Different use case
-
RENETCOL_USE_in_RENATER.pdf
(154.4 KB) - added by andreu 11 years ago.
renetcol use in RENATER