Table of Contents
Monitoring
- Overview of Network Monitoring Tools
- PRTG easy Windows Bandwidth monitoring → http://www.paessler.com/prtg
- Sysorb (wetterskip) → http://www.evalesco.com/index.php?page=overview
- Nagios → http://www.nagios.org/
- Centreon (Nagios extension) → http://www.centreon.com/Centreon/product-overview.html
- Monitoring One → http://www.fineconnection.com/
- vnStat → http://humdi.net/vnstat/
- Big Brother → http://bb4.com/
- The Dude Network Monitor (tip VHL): http://www.mikrotik.com/thedude.php
Configuration Management
- RANCID - Really Awesome New Cisco confIg Differ
→ http://www.shrubbery.net/rancid/
Rancid
- RANCID - Really Awesome New Cisco confIg Differ
→ http://www.shrubbery.net/rancid/ - use SVN and WebSVN in Rancid → http://www.progob.nl/robmaaseu/?p=179
OPSView
Linux monitoring
- Icinga Server Monitoring → http://www.icinga.org/
Politie IRN uses:
- router → 19 inch rackmount geode appliance
- router → http://www.pfsense.org/
- monitoring → http://www.zabbix.com/
Netdisco
- NetDisco (open-source, has IP/MAC to port resolution)
→ http://netdisco.org/
Zabbix
- Zabbix → http://www.zabbix.com/
- discussion on Zabbix agentless ping check
InterMapper
- (Marco dJ: 1sec monitoring): InterMapper
→ http://www.intermapper.com/products - IM info Netflow on Cisco
- IM info IP-SLA
- IP-SLA probe: ca.ubc.snmp.cisco-ip-sla.txt.zip
Where do I register the Flows license key? Open the InterMapper Flows window. Click on the Settings button (the gear at the upper right hand corner) Click the Registration Tab and then click Update License. Paste in the entire two lines and click ok
Tools
- tracemac (snmp on Cisco) → http://freshmeat.net/projects/tracemac/
Traffic-information Export
- Manage Engine Netflow Analyzer → http://www.manageengine.com/products/netflow/
NetFlow
- wikipedia → Netflow
- paessler on Cisco NetFlow → http://www.paessler.com/support/kb/questions/212/
- wikipedia → IPFIX
- ManageEngine has a free NetFlow Analyzer
- Netflow on nBox → http://www.nmon.net/nBox_nmon.html
- Cisco NetFlow
- Cisco Flexible NetFlow (fnf)
- Cisco NetFlow device support
Open Source NetFlow Probe
- TransPort → http://www.imagestream.com/TransPort.html
- softflowd → http://www.mindrot.org/projects/softflowd/
Open Source NetFlow Collector/Analyzer
- overview of tools → http://www.networkuptime.com/tools/netflow/
- Network Monitoring Tools → http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html
Monitoring tools
- NGN (tip AS@VLC)
- distri SCOS with monitoring tools → http://www.scos.nl/pages/cace/pilot.htm
- NetFlow style flow monitor based on Wireshark → CACE
- Elcomsoft Wireless Security Auditor (WPA/WPA) → http://www.elcomsoft.com/ewsa.html
- Ipanema WAN-optimalisation → http://www.techaccess.nl/leveranciers/ipanema.html
sFlow
- sFlow in RFC 3176
Open-source NetFlow
- NetFlow for Linux/iptables → http://sourceforge.net/projects/ipt-netflow/
--[CWD=~]--[22:36:00 Fri 11-Dec-2009 CET]--[root@samba]--[Debian-5]------ > apt-cache search netflow flow-tools - collects and processes NetFlow data flow-tools-dev - development files for flow-tools fprobe - export captured traffic to remote NetFlow Collector fprobe-ng - export captured traffic to remote NetFlow Collector (meta) fprobe-ulog - export captured traffic to remote NetFlow Collector (ULOG version) libcflow-perl - perl module for analyzing raw IP flow files written by cflowd nfdump - netflow capture daemon nfdump-dbg - netflow capture daemon tools compiled with debugging symbols pmacct - promiscuous mode traffic accountant softflowd - Flow-based network traffic analyser --[CWD=~]--[22:36:47 Fri 11-Dec-2009 CET]--[root@samba]--[Debian-5]------
- Cacti Video Tutorial Netflow / Flowviewer → http://gregsowell.com/?p=610
- Linux traffic tap to NetFlow: nProbe → http://www.ntop.org/nProbe.html
SNMP
- MIB = Management Information Bbase
- SMI = Structure of Management Information
- SMUX (rfc1227) = SNMP multiplexing
- 64-bit High-Capacity Counters are defined in RFC2233
- for HC-counters minumum SNMPv2 is required
- IF-MIB = rfc2863
- Mac OS MIB Browser → http://ireasoning.com/mibbrowser.shtml
Syslog
More
Cacti
- Cacti → http://www.cacti.net/
- cacti howto → http://docs.cacti.net/?q=node/70
- Cacti Aggregate plugin → http://docs.cacti.net/plugin:aggregate
“It'll require Plugin Architecture to be implemented though.”
→ http://forums.cacti.net/post-84968.html - Cacti Realtime plugin → http://forums.cacti.net/about26662-0.html
- Cacti Juniper/Netscreen ScreenOS 5.3 Policy Counters
→ http://forums.cacti.net/viewtopic.php?t=20143
→ http://forums.cacti.net/about25315.html - aggrated traffic (2links) → http://forums.cacti.net/about15902.html
- Aggregation of 2,3, and 4 sources → http://forums.cacti.net/about10465.html
- Agreggating router interfaces into one graph - plus total → http://forums.cacti.net/viewtopic.php?t=5703
- Cacti with sub-minute intervals → use mcron: http://www.gnu.org/software/mcron/
Smokeping
- Howtoforge → Monitoring Network Latency With Smokeping
- RHEL, CentOS, Fedora → http://www.express.org/~wrl/rrdtool/
- Smokeping RPM
→ http://ftp.nakedape.cc/pub/nakedape/rpms/main/el4/rpm/smokeping/
Commercial test tools
- Solarwinds Orion (recommendation Martijn Vuik) → http://www.solarwinds.com/
- WhatsUpGold → http://www.whatsupgold.com/
- List of NetFlow and alike
→ http://www.switch.ch/network/projects/completed/TF-NGN/floma/software.html - Munin (vb bij BIT) → http://munin.projects.linpro.no/
- Javin → http://www.javvin.com/index.html
Microsoft Monitor
Tools
- Mini Maxwell Network Emulator
→ http://www.iwl.com/mini-maxwell-emulation/index.php?Itemid=123 - Check domain (MX-records, relay)
→ http://www.aboutmyip.com/AboutMyXApp/QuickServerTest.jsp - what is my ip, name, tools
→ http://www.aboutmyip.com/AboutMyXApp/AboutMyIP.jsp
Zenoss
- Zenoss Enterprise → http://www.zenoss.com/
- Zenoss Community → http://www.zenoss.com/community/
/Devices /Server /Templates /Device /CPU Utilization set enabled: false
NetMRI
- NetMRI: automatisch configuration backup, analysis, auto discovery
IP-SLA
- Wikipedia → IP SLA
