Nfdump

Jul 20, 2023

Command-line tools to collect and process NetFlow data

NFDUMP tools support netflow v5, v7 and v9 capturing and processing.

nfcapd - netflow capture daemon. Reads the netflow data from the network and stores the data into files.

nfdump - netflow dump. Reads the netflow data from the files stored by nfcapd. It’s syntax is similar to tcpdump. If you like tcpdump you will like nfdump.

nfprofile - netflow profiler. Reads the netflow data from the files stored by nfcapd. Filters the netflow data according to the specified filter sets profiles and stores the filtered data into files for later use.

nfreplay - netflow replay. Reads the netflow data from the files stored by nfcapd and sends it over the network to another host.

ft2nfdump - flow-tools to nfdump - optional component.



Checkout these related ports: