Argus
Audit Record Generation and Usage System (Argus) is a Real
Time Flow Monitor that is designed to perform comprehensive IP network
traffic auditing.
Argus is run either as a persistant daemon, reading live
packets from a
network interface, or as a user program, reading packets from a packet
capture file. The default, i.e. when it is run without any
configuration, is to run as a daemon.
Argus requires only a few simple configuration variables to do its
work. For the custom minded, Argus supports a large number of options.
Features include:
- Can be deployed either on the network using a tapping
strategy that captures all the packets destined to and from the target
web server, or Argus can be deployed on the web server itself
- Provides a common data format for reporting flow metrics
such as connectivity, capacity, demand, loss, delay, and jitter on a
per transaction basis
Return
to Security Home Page
Last Updated Sunday, May 04 2008 @ 08:58 AM EDT |