工具地址:
https://github.com/caesar0301/pkt2flow
相关介绍:
将pcap包拆分成流的格式,拆分过后的流将以源IP、源端口、目的IP、目的端口的格式存放,一个完整的会话将保存在一个文件夹中。
A simple utility to classify packets into flows. It's so simple that only one task is aimed to finish.
For Deep Packet Inspection or flow classification, it's so common to analyze the feature of one specific flow. I have make the attempt to use made-ready tools like tcpflows
, tcpslice
, tcpsplit
, but all these tools try to either decrease the trace volume (under requirement) or resemble the packets into flow payloads (over requirement). I have not found a simple tool to classify the packets into