Network Analyzers

Arkime – scalable network analysis and full packet capture system

Arkime is a scalable network analysis and full packet capture system. It captures network traffic, stores packets in standard PCAP format, and indexes session metadata using OpenSearch or Elasticsearch.

A web interface provides fast searching, browsing and exporting of captured traffic. Arkime is designed to complement existing intrusion detection and security monitoring systems rather than replace them. It can be distributed across multiple systems to analyse networks carrying tens of gigabits of traffic per second.

This is free and open source software.

Key Features

  • Captures and stores complete network traffic in standard PCAP format.
  • Indexes network session metadata using OpenSearch or Elasticsearch.
  • Provides a web interface for browsing, searching and exporting packets.
  • Scales across multiple capture systems for high-volume networks.
  • Exposes APIs for downloading PCAP files and JSON session data.
  • Works with PCAP analysis tools including Wireshark.
  • Integrates threat intelligence into session metadata with wiseService.
  • Gathers contextual intelligence for investigations with Cont3xt.
  • Monitors and provides access to multiple Arkime clusters with Parliament.
  • Supports centralised viewers for distributed capture deployments.
  • Offers prebuilt packages and official container images.
  • Supports HTTPS, proxy-based authentication and OpenSearch security.

Website: github.com/arkime/arkime
Support:
Developer: Arkime
License: Apache License 2.0

Arkime is written in C and JavaScript. Learn C with our recommended free books and free tutorials. Learn JavaScript with our recommended free books and free tutorials.


Related Software

Network Analyzers
WiresharkNetwork protocol analyzer with a rich and powerful feature set
EttercapComprehensive suite for man in the middle attacks
KismetWireless network and device detector, sniffer, wardriving tool
IPTraf-ngFeature-laden network statistic monitoring tool
netsniff-ngSwiss army knife for daily Linux network plumbing
KyanosNetworking analysis tool using eBPF
EtherApeGraphical network monitor
darkstatCaptures network traffic, calculates usage statistics, and serves reports
justnifferNetwork TCP packet sniffer with reliable TCP flow rebuilding
tcpflowTCP/IP packet demultiplexer
tcpdumpPowerful and hugely respected command-line packet analyzer
sniffgluePacket sniffer written in Rust
sniffer Alternative network traffic sniffer
dsniffCollection of tools for network auditing and penetration testing
ngrepgrep applied to the network layer
Network MonitorRreal-time network connection monitoring tool
sniffitCORBA based sniffer system with ncurses interactive mode
JomonNetwork forensics and sniffer tool

Read our verdict in the software roundup.


Best Free and Open Source Software Explore our comprehensive directory of recommended free and open source software. Our carefully curated collection spans every major software category.

This directory is part of our ongoing series of informative articles for Linux enthusiasts. It features hundreds of detailed reviews, along with open source alternatives to proprietary solutions from major corporations such as Google, Microsoft, Apple, Adobe, IBM, Cisco, Oracle, and Autodesk.

You’ll also find interesting projects to try, hardware coverage, free programming books and tutorials, and much more.

Discovered a useful open source Linux program that we haven’t covered yet? Let us know by completing this form.
Subscribe

Please read our Comment Policy before commenting.

Notify of
guest
0 Comments
Oldest
Newest Most Voted