Well, I guess you didn't read docs/FAQ... it is available on your ntop instance in About | FAQ. There is an entire section on what ntop is and how it works, which talks about the layer 2 / layer 3 issues. Probably should start there.
-----Burton -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Stella Michael Sent: Thursday, December 08, 2005 11:15 AM To: [email protected] Subject: [Ntop] Protocol Decoders (plain txt) Hello all, Sorry for the orig. html post! I hope I didn't just miss this in the docs/list/faq, but I was wondering if there was a list of what protocols ntop can decode. I'm hoping to use ntop to determine what percentage of the traffic flowing out our internet connection is P2P. I have ntop 3.2 up and working wonderfully, with the protocol decoders on, don't trust mac addresses, and its listening on a span port off the firewall. I see lots of classified traffic but also lots of unknowns and was hoping to deduce what the unknowns could be, if there was a list of what ntop knows about. Also, are the protocol decoders based off of ip ports or are they doing some sort of layer 7 decoding or is it something in between/both? BTW - Ntop is wonderful - it's helped us countless times in discovering what's actually happening on the local net. Thanks, -Mike _______________________________________________ Ntop mailing list [email protected] http://listgateway.unipi.it/mailman/listinfo/ntop _______________________________________________ Ntop mailing list [email protected] http://listgateway.unipi.it/mailman/listinfo/ntop
