Text
Network flow analysis
CONTENTS
INTRODUCTION
NETWORK ADMINISTRATION AND NETWORK MANAGEMENT
NETWORK MANAGEMENT TOOLS
ENOUGH GRIPING : WHAT’S THE SOLUTION ?
FLOW-TOOLS AND ITS PREREQUISITES
FLOWS AND THIS BOOK
1 FLOW FUNDAMENTALS
WHAT IS A FLOW ?
FLOW SYSTEM ARCHITECTURE
THE HISTORY OF NETWORK FLOW
FLOWS IN THE REAL WORLD
FLOW EXPORT AND TIMEOUTS
PACKET-SAMPLED FLOWS
2 COLLECTORS AND SENSORS
COLLECTOR CONSIDERATIONS
SENSOR CONSIDERATIONS
IMPLEMENTING THE COLLECTOR
INSTALLING FLOW-TOOLS
RUNNING FLOW-CAPTURE
HOW MANY COLLECTORS
COLLECTOR LOG FILES
COLLECTOR TROUBLESHOOTING
CONFIGURING HARDWARE FLOW SENSORS
CONFIGURINNG SOFTWARE FLOW SENSORS
THE SENSOR: SFTFLOWD
3 VIEWING FLOWS
USING FLOW-PRINT
SETTING FLOW-PRINT FORMATS WITH –F
TCP CONTROL BITS AND FLOW RECORDS
ICMP TYPES AND CODES AND FLOW RECORDS
4 FILTERING FLOWS
FILTER FUNDAMENTALS
USEFUL PRIMITIVES
FILTER MATCH STATEMENTS
USING MULTIPLE FILTERS
LOGICAL OPERATOR IN FILTER DEFINITIONS
FILTERS AND VARIABLES
5 REPORTING AND FOLLOW-UP ANALYSIS
DEFAULT REPORT
MODIFYING THE DEFAULT REPORT
ANALYZING INDIVIDUAL FLOWS FROM REPORT
OTHER REPORT CUSTOMIZATIONS
USEFUL REPORT TYPES
CUSTOMIZING REPORT
6 PERL, FLOWSCAN, AND CFLOW.PM
INSTALLING CFLOW.PM
FLOWDUMPER AND FULL FLOW INFORMATION
FLOWSCAN AND CUFLOW
FLOWSCAN PREREQUISITES
INSTALLING FLOWSCAN AND CUFLOW
FLOW RECORD SPLITINNG AND CUFLOW
USING CFLOW.PM
7 FLOWVIEWER
FLOWTRACKER AND FLOWGRAPHER VS CUFLOW
FLOWVIEWER SECURITY
INSTALLING FLOWVIEWER
CONFIGURING FLOWVIEWER
USING FLOWVIEWER
FLOWTRACKER
INTERFACE NAMES AND FLOWVIEWER
8 AD HOC FLOW VISUALIZATION
GNUPLOT 101
TIME-SERIES EXAMPLE : BANDWIDTH
AUTOMATING GRAPH PRODUCTION
COMPARISON GRAPHS
9 EDGES AND ANALYSIS
NETFLOW V9
SFLOW
PROBLEM SOLVING WITH FLOW DATA
AFTERWORD
No other version available