Dear all, we have just introduced n2disk 2.0 that is an application leveraging on DNA able to dump network traffic on disk in pcap format. n2disk supports packet filtering and indexing during capture, as well comes with some companion tools for retrieving packets matching filtering expressions specified in BPF format. Packets can be dumped with software-timestamps (we used an active polling technique that allowed us to have accurate timestamps even without hardware cards) or hardware-timestamps when using cards that support it (e.g. Intel 1Gbit 82580/i350 or Silicom 10G precise timestamping card).
Unlike costly proprietary packet-to-disk solutions, n2disk can run on commodity hardware using DNA-aware network adapters. Contrary to the common belief that packet-to-disk solutions are expensive and based on proprietary (i.e. non-pcap) dump formats, n2disk demonstrates that this statement is no longer true making packet-to-disk a commodity activity. More information about n2disk can be found on this blog post: http://www.ntop.org/n2disk/using-n2disk-for-10-gbit-line-rate-packet-to-disk/ Enjoy Luca _______________________________________________ Ntop mailing list [email protected] http://listgateway.unipi.it/mailman/listinfo/ntop
