CICFlowMeter icon indicating copy to clipboard operation
CICFlowMeter copied to clipboard

Can I use Real time mode with cli?

Open Vccxx opened this issue 4 years ago • 5 comments

I am working on a project that need to run CICFlowMeter in realtime mode on a Centos machine without GUI. But it seems that the cli mode of CICFlowMeter doesn't support realtime mode (the cfm.sh) Do I need to modify the source code to achieve my goal ? ps : I don't think tcpdump + CICFlowMeter is a good idea because the realtime flow may become incomplete when using rotate_seconds (-z paramater) to save and process pcaps.

Vccxx avatar Jul 07 '20 06:07 Vccxx

If I use command like this : ./cfm test_pcap_dir output_dir and the test_pcap_dir contains two pcap files, each one contains part of the packet belongs to one tcp flow. Will CICFlowMeter realize this situation and calculate the output correctly (with only one line output in the output csv)?

Vccxx avatar Jul 07 '20 07:07 Vccxx

I have the same the demands,did you solve the problem ?

dufq avatar Sep 11 '20 06:09 dufq

Also looking to achieve the same, is there any update on this?

padraigmc avatar Apr 08 '21 19:04 padraigmc

Also looking to achieve the same, is there any update on this? https://gitlab.com/hieulw/cicflowmeter sniff packets real-time from interface to flow csv: (need root permission) cicflowmeter -i eth0 -c flows.csv Also, check this https://github.com/iPAS/TCPDUMP_and_CICFlowMeter

stjordanis avatar Jun 29 '21 00:06 stjordanis

I am working on a project that need to run CICFlowMeter in realtime mode on a Centos machine without GUI. But it seems that the cli mode of CICFlowMeter doesn't support realtime mode (the cfm.sh) Do I need to modify the source code to achieve my goal ? ps : I don't think tcpdump + CICFlowMeter is a good idea because the realtime flow may become incomplete when using rotate_seconds (-z paramater) to save and process pcaps.

@ahlashkari Could you please add a way to use cfm with arguments like cfm -i eth0 -c flows.csv to run in real time from the command line, without the java gui?

stjordanis avatar Jul 27 '21 14:07 stjordanis