Books & Videos

Table of Contents

  1. Chapter 1 FLOW FUNDAMENTALS

    1. What Is a Flow?

    2. Flow System Architecture

    3. The History of Network Flow

    4. Flows in the Real World

    5. Flow Export and Timeouts

    6. Packet-Sampled Flows

  2. Chapter 2 COLLECTORS AND SENSORS

    1. Collector Considerations

    2. Sensor Considerations

    3. Implementing the Collector

    4. Installing Flow-tools

    5. Running flow-capture

    6. How Many Collectors?

    7. Collector Log Files

    8. Collector Troubleshooting

    9. Configuring Hardware Flow Sensors

    10. Configuring Software Flow Sensors

    11. The Sensor: softflowd

  3. Chapter 3 VIEWING FLOWS

    1. Using flow-print

    2. Setting flow-print Formats with -f

    3. TCP Control Bits and Flow Records

    4. ICMP Types and Codes and Flow Records

  4. Chapter 4 FILTERING FLOWS

    1. Filter Fundamentals

    2. Useful Primitives

    3. Filter Match Statements

    4. Using Multiple Filters

    5. Logical Operators in Filter Definitions

    6. Filters and Variables

  5. Chapter 5 REPORTING AND FOLLOW-UP ANALYSIS

    1. Default Report

    2. Modifying the Default Report

    3. Analyzing Individual Flows from Reports

    4. Other Report Customizations

    5. Useful Report Types

    6. Customizing Reports

  6. Chapter 6 PERL, FLOWSCAN, AND CFLOW.PM

    1. Installing Cflow.pm

    2. flowdumper and Full Flow Information

    3. FlowScan and CUFlow

    4. FlowScan Prerequisites

    5. Installing FlowScan and CUFlow

    6. Flow Record Splitting and CUFlow

    7. Using Cflow.pm

  7. Chapter 7 FLOWVIEWER

    1. FlowTracker and FlowGrapher vs. CUFlow

    2. FlowViewer Security

    3. Installing FlowViewer

    4. Configuring FlowViewer

    5. Using FlowViewer

    6. FlowGrapher

    7. FlowTracker

    8. Interface Names and FlowViewer

  8. Chapter 8 AD HOC FLOW VISUALIZATION

    1. gnuplot 101

    2. Time-Series Example: Bandwidth

    3. Automating Graph Production

    4. Comparison Graphs

  9. Chapter 9 EDGES AND ANALYSIS

    1. NetFlow v9

    2. sFlow

    3. Problem Solving with Flow Data

    4. Afterword

  1. UPDATES