Hello,

 

In my environment, end user systems are registered in DNS as an asset
tag.  I then must go to an external DB or use M$MC or LDAP hooks into AD
to lookup either their IP address or asset tag to find out the actual
users name so I can call them and ask, "WTF are you downloading 100GB of
p0rn?"

 

I want nTop to do these lookups for me.  For example, if the normal
resolution process returns a string that appears to be an internal asset
tag number, then ignore it and do some extra steps to resolve the IP to
a REAL user name!

 

Can someone point me in the right direction of where to insert my custom
code, or build a plugin that others may make use of?  I don't do C, so
anything I write would be Perl.

 

Similarly, I find numerous instances where public IP's don't resolve.  I
use netflow so can't really take advantage of the normal DNS snooping
process ntop does.  Many of these hosts are streaming servers of some
kind (p2p, AV, etc.) that I want to try to resolve somehow....

 

Gary

 






<font size="1">
<div style='border:none;border-bottom:double windowtext 2.25pt;padding:0in 0in 
1.0pt 0in'>
</div>
"This email is intended to be reviewed by only the intended recipient
 and may contain information that is privileged and/or confidential.
 If you are not the intended recipient, you are hereby notified that
 any review, use, dissemination, disclosure or copying of this email
 and its attachments, if any, is strictly prohibited.  If you have
 received this email in error, please immediately notify the sender by
 return email and delete this email from your system."
</font>

_______________________________________________
Ntop mailing list
[email protected]
http://listgateway.unipi.it/mailman/listinfo/ntop

Reply via email to