Time Machine

From BroWiki

Jump to: navigation, search

The timemachine can record the contents of a high-volume network traffic stream in order to later "travel back in time" and inspect activity that has only become interesting in retrospect. Two examples of use are security forensics (determining just how an attacker compromised a given machine) and network trouble-shooting, such as inspecting the precursors to a fault after the fault. The timemachine is designed to work in Gigabit environments and to store several days of network traffic.

For more information see the timemachine homepage.

To reach the timemachine develeopers write to tm@lists.net.t-labs.tu-berlin.de

Personal tools