Abstract
Diventi provides a write optimized index of network logs such as netflow or zeek. The program will ingest various network traffic logs (zeek connection logs or NetflowV5, v9 or IPFix logs) and index each IP address and time of its activity. This database can then be queried for timely tracking of network activity. It currently uses the ft-index library from Percona but is adaptable to any key-value store that supports the Berkeley DB api.SAND2019-15037 M
Sandia National Laboratories is a multimission laboratory managed and operated by National Technology & Engineering Solutions of Sandia, LLC, a wholly owned subsidiary of Honeywell International Inc., for the U.S. Department of Energy’s National Nuclear Security Administration under contract DE-NA0003525.
- Developers:
-
Kroeger, Thomas [1] ; West, Evan [1] ; Raizes, Justin
- Sandia National Lab. (SNL-NM), Albuquerque, NM (United States)
- Release Date:
- 2019-12-11
- Project Type:
- Open Source, Publicly Available Repository
- Software Type:
- Scientific
- Programming Languages:
-
C++
Makefile
Python
- Version:
- 1.0
- Licenses:
-
BSD 2-clause "Simplified" License
- Sponsoring Org.:
-
USDOEPrimary Award/Contract Number:NA0003525
- Code ID:
- 46580
- Site Accession Number:
- SCR 2435
- Research Org.:
- Sandia National Laboratories (SNL-NM), Albuquerque, NM (United States)
- Country of Origin:
- United States
Citation Formats
Kroeger, Thomas, West, Evan, and Raizes, Justin.
Diventi.
Computer Software.
https://github.com/sandialabs/opendiventi.
USDOE.
11 Dec. 2019.
Web.
doi:10.11578/dc.20201105.5.
Kroeger, Thomas, West, Evan, & Raizes, Justin.
(2019, December 11).
Diventi.
[Computer software].
https://github.com/sandialabs/opendiventi.
https://doi.org/10.11578/dc.20201105.5.
Kroeger, Thomas, West, Evan, and Raizes, Justin.
"Diventi." Computer software.
December 11, 2019.
https://github.com/sandialabs/opendiventi.
https://doi.org/10.11578/dc.20201105.5.
@misc{
doecode_46580,
title = {Diventi},
author = {Kroeger, Thomas and West, Evan and Raizes, Justin},
abstractNote = {Diventi provides a write optimized index of network logs such as netflow or zeek. The program will ingest various network traffic logs (zeek connection logs or NetflowV5, v9 or IPFix logs) and index each IP address and time of its activity. This database can then be queried for timely tracking of network activity. It currently uses the ft-index library from Percona but is adaptable to any key-value store that supports the Berkeley DB api.SAND2019-15037 M
Sandia National Laboratories is a multimission laboratory managed and operated by National Technology & Engineering Solutions of Sandia, LLC, a wholly owned subsidiary of Honeywell International Inc., for the U.S. Department of Energy’s National Nuclear Security Administration under contract DE-NA0003525.},
doi = {10.11578/dc.20201105.5},
url = {https://doi.org/10.11578/dc.20201105.5},
howpublished = {[Computer Software] \url{https://doi.org/10.11578/dc.20201105.5}},
year = {2019},
month = {dec}
}