Releases: CESNET/ipfixprobe
v4.7.1
v4.6.1
v4.6.0
v4.5.0
v4.4.0
Brief list of changes:
- improved performance by replacing std::stringstream by std::string (due to global lock)
- improved WireGuard confidence
- fixed QUIC plugin
- fixed uninitialised variable
- fixed UniRec flow duplication
- cleanup IPFIX elements and fixed their duplicates (compatibility of some elements with flowmon exporter)
- added DLT_RAW link-layer of libpcap
v4.0.0
The ipfixprobe flow exporter is used to process packets of the high-speed network traffic to create aggregated information about ongoing traffic. The output of ipfixprobe are IP flows represented in the standard IPFIX format, thus the tool is compatible with common monitoring and detection systems. To receive packets from the network card, ipfixprobe supports libpcap and DPDK technologies and is also compatible with COMBO accelerator cards developed by CESNET. This makes it possible to monitor high-speed traffic at speeds of up to around 170Gb/s. The ipfixprobe architecture is modular and contains a number of plugins that extend common IPFIX data information. More advanced packet sequence statistics allow the use of machine learning methods to classify network traffic, including encrypted communication.