*** This project moved to Github ***
https://github.com/phaag/nfdump

However, you may want to download older versions from here.

nfdump is a set of tools to collect and process netflow data. It's fast and has a powerful filter pcap like syntax. It supports netflow versions v1, v5, v7, v9 and IPFIX as well as a limited set of sflow. It includes support for CISCO ASA (NSEL) and CISCO NAT (NEL) devices, which export event logging records as v9 flows.
nfdump is fully IPv6 compatible.

Features

  • Processes netflow v1, v5, v7 and v9 FNF
  • Powerful pcap like syntax for netflow
  • Fully IPv6 compatible
  • Processes IPFIX (beta)

Project Activity

See All Activity >