Functionalities
Back-end
- Identify hosts and services
- Generate bidirectional flows
Front-end
- Restrict access by login/password, support multiple accounts
- Visualize host and service activity by:
- Type of end point
- Time period
- Network range
- Port number
- Granularity (daily, weekly, monthly)
- Save activity visualization and add comments/criticality level
- Highlight specific host or service and add comments/criticality level
- Display detailed bidirectional flows
- Display Top 20:
- Most active internal servers and services
- Most active internal hosts scanning the network
- Most scanned internal services
- Define preferred subnets to restrict scope of Top 20
Todo List
- Create and apply flow-based intrusion detection signatures (currently being tested)
- Display parallel plot for flow activity (currently being tested)
Known Issues
- Does not support Internet Explorer
Related
Documentation: Overview
×
Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.