cisco/mercury 的主要功能包括:Network Monitoring Tools, Network Security。
cisco/mercury 的开源替代品包括: google/stenographer — Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast… aol/moloch — Moloch is a full packet capture system and network forensics platform designed for large scale network traffic… arkime/arkime — Arkime is a distributed packet analysis platform and full packet capture system designed for recording raw network… arpitn30/nipper-ng — Automatically exported from code.google.com/p/nipper-ng. arthepsy/ssh-audit — SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc). 0x676e67/vproxy — A high-performance HTTP/HTTPS/SOCKS5 proxy server.
Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. Discussion/announcements at stenographer@googlegroups.com
Moloch is a full packet capture system and network forensics platform designed for large scale network traffic recording and indexing. It functions as a distributed packet indexer that stores raw data in PCAP format for deep packet analysis and security investigations. The system distinguishes itself through a decentralized architecture that distributes capture and viewing components across multiple nodes to handle high volumes of network traffic. It utilizes a web-based management interface for browsing network sessions and provides a programmable API for exporting captured traffic and metad
Arkime is a distributed packet analysis platform and full packet capture system designed for recording raw network traffic, indexing metadata, and performing network forensics. It functions as a network traffic indexer and security tool that enables the monitoring, querying, and browsing of large-scale network traffic across multi-cluster architectures. The platform distinguishes itself through its ability to manage distributed capture clusters from a centralized administrative dashboard. It integrates external data feeds with internal traffic logs to identify known threats and provides a pro