$ ./pminfo.pl /var/tmp/snortstat
-= Tha Pig Doktah 0.1 Dev =-
Copyright (C) 2010 JJ Cummings
Report Info:
Processed: /var/tmp/snortstat
First Entry: Wed Sep 1 11:34:05 2010
Last Entry: Wed Sep 1 22:27:47 2010
Time Span: 0 days, 10 hours, 53 minutes and 42 seconds
Wirespeed:
High: 6.683 Mbits/Sec | Wed Sep 1 12:54:00 2010
Low: 0.007 Mbits/Sec | Wed Sep 1 18:14:18 2010
Avg: 0.276 Mbits/Sec
% Packet Loss:
High: 3.817% | Wed Sep 1 20:13:39 2010
Low: 0.000% | Wed Sep 1 22:22:47 2010
Avg: 0.095%
Additional Info:
Avg Pkt Size: 363 bytes
Avg Syns/Sec: 0.153
Avg SynAcks/Sec: 0.105
Avg Alerts/Sec: 0.001
Avg Current Cached Sessions: 2326
Obviously this is was only as a quick test and does not include all of the important pieces of data. Please feel free to hit me up in #snort (on freenode), twitter, email(if'n you knows it), or post a comment here.
Cheers,
JJC
2 comments:
Something like this would be very helpful. There's mention of a snort plugin being worked on for collectd, but I don't know if it is really being worked on or not.
I'll have a look at the plug-in, I have also updated this post with some graphical output etc...
Post a Comment