33
Network Monitoring Tools * Les Cottrell, SLAC. Last Update: October 14, 2012 -- Major clean up of failing URLs using CheckLink suggested by Brad Canham. ESnet | ESCC | Internet end-to-end monitoring | Tutorial This is a list of tools used for Network (both LAN and WAN) Monitoring tools and where to find out more about them. The audience is mainly network administrators. You are welcome to provide links to this web page. Please do not make a copy of this web page and place it at your web site since it will quickly be out of date. See here if you wish to suggest additions or changes. Page Contents Addition History Contents Utilities and demos, Links, Visitors, Addition history , Introduction Suggesting Additions Network Monitoring Platforms Monitoring Tools Integrated with NMP Commercial Monitoring Tools, not Integrated with an NMP Analyzer/Sniffer, Application/Services monitoring ( Hosted/managed monitoring services), Flow monitoring, FTP , IP Address/Asset Management, IT Search, Network security , SNMP tools, Topology , VOIP , Public Domain Network Monitoring Tools Application Monitoring, BGP , Finger Printing, Flow monitoring, FTP , IPAM, Mapping, Monitoring Infrastructures, Network Security , Packet Capture, Path Characterization, Ping, RRDtool, SNMP , Throughput tools, Traceroute, Web Tools Auxiliary Tools to Enable Monitoring, Analysis, Report Creation or Simulation Further Information Disclaimer Useful utilities and Demos Swiss Army Knife Internet Tool from RobTex What is my IP address/traceroute? What is my IP address, OS, browser? Visual Traceroute Where am I? Information on my IP address Where is another host? Find Lat/Long of a site DNS Lookup, PingER PingWorld PingER Internet Performance Test my network configuration from Stanford, from all over Network Path & Application Daemon What is the speed of your Internet connection Speed test for both download and upload speeds Bandwidth test to my host Bandwidth from Houston Speed Test, Pingtest, Bandwidth Test World's connection speeds from: Akamai, NetIndex, MLab Internet measurement tools Estimate bandwidth, Bandwidth*Delay calculator , WAN throughput calculator , Speed vs. distance, RTT & bandwidth test 2012 ActionPacked, Aqualogic Monitoring System, Argus, CapMon, Edoceo Entuity , Ethernet Packet Bombadier , Express Metrix, FrameFlow, KACE, LANGuardian, Luminet, Nectar Services, Netflow Tracker , Network Sate Notifier, Praetorian Guard, Speed Test, Visual Performance Manager (VPM), 2011 Alaloop, AlertFox, Catchpoint, Certus Digital, Congruity , GMS Live Expert, hostUcan, ICmyNetDNS, ICmy.NetFlow analyzer, iGLASS Network Monitoring Services, IPCopper, Kaseya Network Monitor, Lan-Secure, LogicMonitor, Microsft Network Monitor, NetFlowAuditor, NetQuest, netrounds, Network Monitor Software, PagerDuty , Periscope, Pingsweep, Qosmet Switch Center, Verax NMS, vsFTP , 2010 AccelOps, AlarmTilt, AppQoS Live!, CACE Pilot, Cubro, ExtraHop, IP Traffic Monitor , MTUPath, NetDB, Net Detective, NetworkBones, NetworkManagementSoftware, NeuralStar, Nexvu Analyzer, Reconnoiter, ScriptLogic Perspective, SevOne, SevOne DNC, SevOne VoIP , SITEImpulse, StressWalk, System Shepherd, StealthWatch, TelcoAlert, WANGuard Flow' WABGuard Sniff", Webwalk, 2009 ACE Live NetFlow, ACE Live VoIP Monitoring, Aggregate Network Manager, AppNeta, ASDIC, Cyclops, DUMeter, eBox, EZEbSiteMonitoring, Fing, GNMS, Hounddog, Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html 1 of 33 26/10/2012 14:36

Network Monitoring Tools

Embed Size (px)

Citation preview

Page 1: Network Monitoring Tools

Network Monitoring Tools * Les Cottrell, SLAC. Last Update: October 14, 2012 -- Major clean up of failing URLs using CheckLink suggested

by Brad Canham.ESnet | ESCC | Internet end-to-end monitoring | Tutorial

This is a list of tools used for Network (both LAN and WAN) Monitoring tools and where to find out more aboutthem. The audience is mainly network administrators. You are welcome to provide links to this web page. Please do

not make a copy of this web page and place it at your web site since it will quickly be out of date. See here if youwish to suggest additions or changes.

Page Contents Addition HistoryContents

Utilities and demos, Links, Visitors, Addition history,IntroductionSuggesting AdditionsNetwork Monitoring PlatformsMonitoring Tools Integrated with NMPCommercial Monitoring Tools, not Integrated with an NMP

Analyzer/Sniffer, Application/Services monitoring (Hosted/managed monitoringservices), Flow monitoring, FTP, IP Address/Asset Management, IT Search, Networksecurity, SNMP tools, Topology, VOIP,

Public Domain Network Monitoring ToolsApplication Monitoring, BGP, Finger Printing, Flow monitoring, FTP, IPAM, Mapping,Monitoring Infrastructures, Network Security, Packet Capture, Path Characterization,Ping, RRDtool, SNMP, Throughput tools, Traceroute,

Web ToolsAuxiliary Tools to Enable Monitoring, Analysis, Report Creation orSimulationFurther InformationDisclaimer

Useful utilities and Demos

Swiss Army Knife Internet Toolfrom RobTex

What is my IPaddress/traceroute?What is my IP address, OS,browser?

Visual Traceroute

Where am I?Information on my IP addressWhere is another host?Find Lat/Long of a site

DNS Lookup,

PingERPingWorldPingER Internet Performance

Test my network configuration from Stanford, from all overNetwork Path & Application DaemonWhat is the speed of your Internet connectionSpeed test for both download and upload speedsBandwidth test to my hostBandwidth from HoustonSpeed Test, Pingtest, Bandwidth TestWorld's connection speeds from: Akamai, NetIndex,MLab Internet measurement tools

Estimate bandwidth, Bandwidth*Delay calculator, WANthroughput calculator, Speed vs. distance,

RTT & bandwidth test

2012

ActionPacked, AqualogicMonitoring System, Argus,CapMon, Edoceo Entuity,Ethernet Packet Bombadier,Express Metrix, FrameFlow,KACE, LANGuardian,Luminet, Nectar Services,Netflow Tracker, Network SateNotifier, Praetorian Guard,Speed Test, VisualPerformance Manager (VPM),

2011

Alaloop, AlertFox, Catchpoint,Certus Digital, Congruity,GMS Live Expert, hostUcan,ICmyNetDNS, ICmy.NetFlowanalyzer, iGLASS NetworkMonitoring Services,IPCopper, Kaseya NetworkMonitor, Lan-Secure,LogicMonitor, MicrosftNetwork Monitor,NetFlowAuditor, NetQuest,netrounds, Network MonitorSoftware, PagerDuty,Periscope, Pingsweep, QosmetSwitch Center, Verax NMS,vsFTP,

2010

AccelOps, AlarmTilt, AppQoSLive!, CACE Pilot, Cubro,ExtraHop, IP Traffic Monitor,MTUPath, NetDB, NetDetective, NetworkBones,NetworkManagementSoftware,NeuralStar, Nexvu Analyzer,Reconnoiter, ScriptLogicPerspective, SevOne, SevOneDNC, SevOne VoIP,SITEImpulse, StressWalk,System Shepherd,StealthWatch, TelcoAlert,WANGuard Flow' WABGuardSniff", Webwalk,

2009

ACE Live NetFlow, ACE LiveVoIP Monitoring, AggregateNetwork Manager, AppNeta,ASDIC, Cyclops, DUMeter,eBox, EZEbSiteMonitoring,Fing, GNMS, Hounddog,

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

1 of 33 26/10/2012 14:36

Page 2: Network Monitoring Tools

SpeedTestbyAbsoluteFuturity

Justsniffer, Monitoring Forge,NetPrefect, NetworkMonitoring Tools, NetquestOptiCop Converger, OPNETPanorama, Orion ApplicationPerformance Monitor, OrionNetflow Traffic Analysis,Orion IP SLA Monitor,Performance Co-Pilot, Redcell,Serio IT Service View, SNMPSweep Solarwinds Freenetwork tools, Techout, uptimesoftware,

2008

AutoMate, BGPLay, BGPmon,BreakingPoint, Capsa,Collectl, DopplerVue, EDDIE,EffeDetect, Engineer's Toolset,EtherDetect, Ethergrouik,ElvinRRD, FlowMon,FreeNATS, GEM NetworkMonitoring, GnetWatch,iBGPlay, InterMapper Flows,Inventory Genie, IPAudit,IPHost Network Monitor,Labtech Software,LANSurveyor, Lemon,NetaNAV, MoniTiL, monitis,mon.itor.usd, MonitoringGenie, MTD Sentry, OPNETnCompass, NetGong, NetInfo,NetMRI, NetScope, NetworkMiner, Network PerformanceDaily, NFDUMP, NfSen,OPNET Modeler, Opsview,Osmius, PacketTrap, Paglo,Panopta, PC InventoryAdvisor, Q3ADE, RemoteAsset Tracker, Sentinel, ServerSupervisor, Splunk, Tembria,tcpillust, The Dude, Totalnetwork monitor, ZettaView,Zyrion Traverse,

2007

Ace, APCON, akk@da,Andrisoft WANGuard, Anue,Aurora, BasicState,CommandCenter NOC, David,Denika, Dummmynet, GFILANguard, Gomez, -->GroundWork, Heroix, HypericHQ, IMMonitor, Monolith,moods, Munin, Net::Flow,NetMapper, NetQoSPerformance Center, NetQosVoIP Monitor, NetworkEnforcer, NetworkManagement Tutorial,Network Weathermap,NetVoyant, OidView, op5Monitor, Pandetix, Pingdom,Pingwy, Scrutinizer NetFlow& sFlow Analyzer,ServersCheck,SimpleServerMonitor, skipole-monitor, SLA, SMARTHawk,SuperAgent, Total NetworkInventory, WAPT,WebPerform, WFilter, XRate1,XYMON,

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

2 of 33 26/10/2012 14:36

Page 3: Network Monitoring Tools

2006

arping, Axence nVision,BBMonitor, Cacti, CSchmidtcollection, CymphonixNetwork Composer, Darkstat,Etherape, EZ-NOC, Eye-onBandwidth, GigamonUniversity, IPTraf, Jnettop,LITHIUM, mrtg-ping-probe,NetMRG, NetworkActivScanner, NimTech, NPAD,Nsauditor, Nuttcp,OpenSMART, Pandora FMS,PIAFCTM, Plab, PolyMon,Rider, RSP, Pktstat,SecureMyCompany,SftpDrive, SNM, SpeedTest,SpiceWorks, Sysmon,TruePath, Unbrowse, Unsniff,WatchMouse, Webalizer, WebServer Stress Tool, Zenoss,

2005

Advanced HostMonitor,Alvias, Airwave, BitTorrent,bulk, BWCTL, Caligare FlowInspector, ClearSight, DistinctNetwork Monitor, EM7,EZMgt, Gigamon, HostGrapher II, HPN-SSH, JavvinPacket Analyzer, Just-ping,LinkRank, MoSSHe, mturoute,N-able OnDemand, Netcool,netdisco, Netflow Monitor,NetQoS, Pathneck, OWAMP,PingER, RANCID, Scamper,SCAMPI, SimpleInfrastructure CapacityMonitor, Spirent, SiteMonitor,STC, SwitchMonitor,SysUpTime, TansuTCP,thrulay, Torrus, Tstat, VSSMonitoring, WebWatchBot,WildPackets, ZoneRanger,

2004

CleverEye, CueVision, D-ITG,FastCopy, FREEping, Ganglia,H.323 Beacon, GFI NetworkServices Monitor,internetVista, IPCheck ServerMonitor, Little:eye,MonitorMagic, N-central,N-vision, Netmeter,NetMechnica, ACE Live(formerly Network PhysicsNetSensory), NetVizor,Observer, OSSMon, OverseerNetwork Monitor, Orca, PRTGTraffic Grapher, QRadar,Route Explorer, Scriptroute,Server Nanny, SNMPExplorer, ServerFiles.com,SNMP Informant, STAB aLinux tracepath, SolarWindsOrion, Vigilix, WatchTowerWebsite Monitoring,WindowsNetworking.com,ZTI,

2003

ABwE, ActivXpets, AnalyseIt, Argus, Big Sister,eGInnovations, InternetDetective, JFF Network

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

3 of 33 26/10/2012 14:36

Page 4: Network Monitoring Tools

Management System,LANsurveyor, LANWatch,LoriotPro, MonitorIT, Nagios,NetIntercept, NetMon,NetStatus, Network DiagnosticTool, Network PerformanceAdvisor, Nimsoft, NPS,Network Probe,NetworksA-OK, NetStat Live,Open NerveCenpter,OPENXTRA, Packeteer,PacketStorm, Packetyzer,PathChirp, Integrien, Sniff'em,Spong, StableNet, TBIT,Tcptraceroute, Tping, Trafd,Trafshow, TrapBlaster,Traceroute-nanog, UltraNetwork Sniffer, Zoho CorpManageEngine OpManager,

2002

ANL Web100 NetworkConfiguration Tester, Anritsu,aslookup, AlertCenter, Alertra,AlertSite, Analyse-it, bbcp,Bro, Chariot, CommView,Crypto-PAn, elkMonitor,DotCom-Monitor, EasyService Monitor, Etherpeek,Fidelia, Finisar, Fpinger,GDChart, HipLink, ipMonitor,LANExplorer, LinkFerret,LogisoftAR, NetCrunch,NetDetector, NetGeo, NEPM,NetReality, NIST Net,NLANR AAD, NMIS,OpenNMS PageREnterprise,PastMon, Pathprobe, remstats,RFT, RUDE, Silverback,SmokePing, Snuffle, SysOrb,Telchemy, TCPTune,TCPurify, UDPmon,WebAttack, Zabbix,

2001

AdventNet SNMP API,Alchemy Network Monitor,Anasil analyzer, Argent,Autobuf, Bing, DSLReports,Firehose, GeoBoy, Packetboyetc, Internet Control Portal,ISDNwatch, Metrica/NPR,Mon, NetTest, Pathrate,RouteView, sFlow, Shunra,Trellian, WCAT, WhatsUpGold, WS_FTP, Zinger,

2000

Analyzer, bbftp, Big Brother,Cricket, EdgeScape, Ethereal(now renamed Wireshark),gen_send/gen_recv, GSIFTP,Gtrace, Holistix,/ InMon,NcFTP, NetAlly, NetScout,Ntop, PingGraph, PingPlotter,Pipechar (part of NCS), RRD,Sniffer, Synack, --> Snoop,StatScope, View2000,VisualPulse, WinPcap,WU-FTPD, WWWperformance monitoring, Xplot

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

4 of 33 26/10/2012 14:36

Page 5: Network Monitoring Tools

1999

Cheops, Ganymede, hping2,Iperf, MatLab, MTR,NeoTrace, Netflow,NetLogger, NextPoint, Nmap,Pchar, Qcheck, SAA, SafeTP,Sniffit, SNMP from UCSD,ResponseNetworks, Tcpshow,Tcptrace

1998 NetOps, Triticom, Maple,PV-Wave, S-Plus, VisualRoute

1997

INS Net Perf Mgmt survey, -->tcpspray, Mapnet, Keynote,prtraceroute clflowd fping,tcpdpriv, Pathchar, CAIDAMeasurement Tool Taxonomy,bprobe & cprobe

1996 mrtg, InterMapper, Lachesis,Optimal Networks,

Introduction [Contents]

The following Network Monitoring Tools grew out of a list that were reported to be in use at 11 ESnet sites in asurvey made by the ESnet Network Monitoring Task Force (NMTF) and completed in October 1995. For somesnapshots of earlier web pages see the Internet Archive Wayback site. Where possible I have provided hypertextlinks to further sources of information on the tool. These links vary in quality ranging from a pointer to the vendorshome page, to the man pages entry, and to how to download the code. We welcome corrections such as identifyingbroken links.

Suggesting Additions/Corrections etc.

This is a volunteer, unfunded effort. This helps assure its independence. Increasingly new additions are from readersuggestions/recommendations. If you have a suggestion for adding something: please send an email to cottrell atslac.stanford.edu making sure that you indicate where the tool fits in the hierarchy, provide a URL to getmore information on the tool, and provide a short one sentence description of the tool's purpose with nomarketing hyperbole. Also if you notice out of date or incorrect links please report. Thanks.

Network Monitoring Platforms (NMPs) - Comparison of NMPs,[Contents]

Aggregate Network Manager is an enterprise-grade network/application/performance monitoring platform. It tightly integrates with other smart buildingmanagement systems, such as physical access control, HVAC, lighting, andtime/attendance control.Airwave Management PlatformT (AMP) wireless network management softwareprovides centralized control for Wi-Fi networks. Features include: access pointconfiguration management, reporting, user tracking, help desk views, and rogueAP discovery.akk@da is a simple network monitoring system designed for small and middlesize computer networks. Its purpose is to quick detect system or network fault andto display information about detected problems for administrators. akk@da isdesigned as a pro-active network monitor. It does not wait for information fromany agents, systems, etc. It collects information every single minute (you candecrease this period to 1 second). Almost all services of the monitored hosts arediscovered automatically.Andrisoft WANGuard Platform provides solutions for WAN links monitoring,DDoS detection and mitigation, traffic accounting and graphing.Axence nVision monitors network infrastructure: Windows, TCP/IP services, web

Monitoring ToolsIntegrated withNMP [Contents]

Cabletron RemoteLAN ManagerCiscoworksOptimal Networks.ScriptLogicPerspective hasseveral toolsincluding NetworkTraffic Analysis,VoIP monitoringand Wirelessmonitoring.Solarwinds hasseveral toolsincluding:ApplicationPerformance

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

5 of 33 26/10/2012 14:36

Page 6: Network Monitoring Tools

and mail servers, URLs, applications (MS Exchange, SQL etc.). It also monitorsrouters and switches: network traffic, interface status, connected computers.nVision collects network inventory and audit license usage - it can alert in case ofa program installation or any configuration change on a remote node. With theagent you can monitor user activity and access computers remotely.CapMon Network monitoring tool that takes away the hassle of maintaining aNagios installation. CapMon uses RRD wrapped in Flash to display statistics,includes syslog, dashboard and SLA modulesCastle RockCommandCenter NOC from Raritan provides polling, Windows and UNIX/Linuxserver management, intrusion detection, vulnerability scanning, and trafficanalysis in an integrated appliance.Cymphonix Network Composer monitors Internet traffic by user, application, andthreat. Includes controls to shape access to Internet resources by user, group,and/or time of day. Also featuring anonymous proxy blocking, policymanagement, and real time monitoring.David system allows you to manage your resources and services through bothIntranet and Internet. provide auto-discovering and network topology buildingfeatures to help keep an intuitive view of your IT infrastructure. Resources,real-time monitoring and accessibility of historical data enable reaction to failures.Configured interfaces for monitored devices allow you to focus on the mostimportant aspects of their work.dopplerVUe provides network discovery, mapping and rules system enablesmonitoring of Ping, SNMP, syslog, and WMI performance metrics. Can be used tomonitor IPv6 devices. Monitors services such as DNS, http and email.eBox is an open source distribution and development framework, based onUbuntu Linux, intended to manage services in a computer network.EM7 from Sciencelogic is an NMS integrated with trouble-ticketing, eventmanagement, reporting, IP management, DNS and monitoring.Entuity provides network management software for etherogeneous environments,it provides a platform to manage network devices. Functionality:Discovery/Inventory/Topology, Event & Fault monitoring, Port/device andflow.based performance, Configuration Management, Reporting.Fidelia also has the Helix entry level tool for small enterprises.FrameFlow is free server monitoring software that includes system healthmonitoring, web site monitoring, SNMP monitoring, reporting, alerts by e-mailand customizable dashboards.FreeNATS, is an open-source network monitoring, alerting and reporting systemavailable as PHP source and as a virtual appliance.GEM Network Monitoring a network monitoring tool that provide SLA reports,dashboards, also monitors anything within a IT network, performance graphs,notifications prior to device failures.Hounddog provides easy and affordable tools for IT Companies/MSP.s to monitor,manage and support their customers networks, servers and workstations.InterMapper Networking monitoring and alerting software for Mac, Windows,Linux, and Solaris.IP Host Network Monitor is a network and server monitoring tool that lets youmonitor availability and performance of mail servers, internet hosts, databaseservers, and other network resources. Performance counters on Windowscomputers can be monitored using WMI. Other supported protocols are HTTP,HTTPS, FTP, SMTP, POP3, IMAP, ODBC, PING...ipMonitor is a network monitoring solution that allows network administrators,webmasters, and Internet service providers to monitor any networked device onthe Internet, corporate intranet, or TCP/IP LAN and receive alerts immediately viaaudible alarm, message, e-mail, or third-party software when a connection fails. It

Monitor, NetFlowTraffic Analyzer,VoIP Monitor,Wireless NetworkMonitor.

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

6 of 33 26/10/2012 14:36

Page 7: Network Monitoring Tools

is a powerful personal monitoring product delivering low cost, simplicity ofoperation, and round-the-clock coverage.Just For Fun Network Monitoring System (JFFNMS) is FREE and designed tomaintain a IP SNMP / Syslog / Tacacs+ Network. It can be used to monitor anystandards compilant SNMP device, Server, TCP port or Custom Poller, also it hassome Cisco oriented features.KACE from Dell Management Appliance delivers a fully integrated systemsmanagement solution.Kaseya is a solution for monitoring, notification, and reporting. It includesagentless monitoring of Windows, Unix, Linux, and BSD operating system. It alsoincludes distributed testing, a unique feature that makes it possible to monitorservers, routers and other network connected equipment that are behind a firewallor only accessible through a VPN. (Used to be called Intellipool).Klogie commercial remote network monitoring system that designed for ease ofuse.LANsurveyor network and desktop management software providing automaticnetwork maps, asset management reports, network monitor and remoteadministration and distribution.Lemon is a server/client based monitoring system. On every monitored node, amonitoring agent launches and communicates using a push/pull protocol withsensors which are responsible for retrieving monitoring information. The extractedsamples are stored on a local cache and forwarded to a central MeasurementRepository using UDP or TCP transport protocol with or withoutauthentication/encryption of data samples. Sensors can collect information onbehalf of remote entities like switches or power supplies. The MeasurementRepository can interface to a relational database or a flat-file backend for storingthe received samples. Web based interface is provided for visualizing the data.LITHIUM LITHIUM|Core is an integrated device and service monitoringplatform with a tightly coupled incident tracking and case management systemand incorporates a web-based interface as well as Windows XP/Vista and Mac OSX monitoring consoles.Little:eye, for management of IT infrastructure of enterprise provides managementof fault, performance, inventory and configuration.ActionPacked is a platform that combines richly detailed network topology,device, and flow visualizations with direct interactive device control to managethe QoS, NetFlow, Routing, IP SLA, and Medianet features embedded insideCisco devices.LogisoftAR provides is an NMP running under Windows providing devicediscovery, mapping, fault (using SNMP traps and syslog) and performancemanagement. Reporting is provided in HTML pages.Luminet is an enterprise fraud management solution that tracks and analyzes useractivity across multiple applications in a network.MetaNAV Network Administration Visualized is a software suite to monitor largecomputer networks. It automatically discovers network topology, monitorsnetwork load and outages, and can send alerts on network events by e-mail andSMS, allowing for flexible configuration of alert profiles.MoniTiL continuously monitors applications, services, networks and events usingWMI, snmp, web, tcp and ping.Monitoring Genie is a large scale data collection and monitoring platform built fortelcos and large service providedrs, able to monitor multiple parameters in 100Ksof nodes in very shory cycles of about a minute using multiple protocols(icmp,snmp,sql,http,telnet,ssh,wmi,registry,open ports...). It can perform actionsbased on monitoring status changes using conditions and correlation rules. Theplatform comes with a builtin reporting system and pre made reports, and canextended to monitor any parameter in the supported protocols. The platform can

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

7 of 33 26/10/2012 14:36

Page 8: Network Monitoring Tools

work as a stand alone product or connect to existing management platforms (hpov,tivoli and micromuse, unictenter, etc).MTD Sentry brings information from SNMP and non-SNMP devices aliketogether into an enterprise monitoring system with extensions for video baseddevices.Monolith creates customized event management, netflow and performancesolutions with a browser-based interface, a single, organic code-set and adashboarding engine.Netcool suite offers five product families that support domain-specific ITmanagement, end-to-end consolidated operations and business servicemanagement.NeuralStar provides enterprise-class capabilities including NOC level visibility,management of multiple and geographically distributed networks and automaticfailover and redundancy for continuous operations.OPNET nCompass visualizes network performance metrics in real-time,consolidating topology, traffic and events in a unified view. It automates responseto network events and contextually launches 3rd party tools for assistedtroubleshooting.NetGong is a network monitoring solution allowing network administrators,webmasters, and Internet service providers to monitor any networked device onthe Internet, corporate intranet, or TCP/IP LAN and receive alerts via audiblealarm, message, e-mail, or third-party software when a connection fails.NetInfo is a collection of 15 network tools on a single, interface. NetInfo allowsbusinesses to combat network downtime by allowing network administrators,webmasters, and Internet service providers to isolate faults, process diagnosticdata and increase internal network security.NetMapper creates automated up-to-date Microsoft Visio® network diagrams,combining multiple physical (Layer 2/3) and logical views of the network withdetailed device configurations and topology overlays like BGP, OSPF, VLANsand VPNsNetMRI from Netcordia automates much of Network Change and ConfigurationManagement (NCCM)by collecting and analyzing network configuration, snmp,and syslong/event data, and providing daily actionable issues.NetPrefect is an enterprise class management and monitoring solution designedprimarily for managed service providers that uses a variety of mechanisms tocommunicate with managed entities including but not limited to snmp, wmi, rs232and icmp in order to collect statistical and state information (e.g. cpu usage,device/service availability etc) as well as executing management functions on thedevice.NetQoS Performance Center Monitors and provides insight into: end-to-endperformance, traffic analysis, VoIP quality, and device performance.N-vision provides availability, performance, security and service management tomultiple customers from one central Web console.NetCrunch from AdRem, provides visualization of physical network topology;flexible performance monitoring, trending and reporting; event filtering andescalation; SNMP management; web access.NetMechanica provides low-cost network masnagement services.NetviewNimsoft Monitoring Solutions (NMS) for Network Monitoring solution verifiesnetwork connectivity to devices (routers, switches, servers, etc.) and applicationservices (FTP, SMTP, HTTP, etc.) revealing accessibility and network latency. Thesolution auto-discovers network interfaces, monitors interface traffic andcalculates bandwidth utilization. Uses SNMP and if not available then syslog canbe used.op5 Monitor provides active monitoring of the IT infrastructure - hardware, traffic

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

8 of 33 26/10/2012 14:36

Page 9: Network Monitoring Tools

& services. This includes connected components from servers, routers and printersservices such as mail services, web servers and virus programmes. It is based onNagios.OpenNMS is an enterprise-grade network management platform developed underthe open source model. It is designed to scale to tens or hundreds of thousands ofmanaged nodes from a single instance. OpenNMS is an integrated platformproviding service availability management, performance data collection (viaSNMP, JMX, HTTP, WMI, XMP, and other protocols), event management(internal events, custom events via an XML/TCP interface, and external events viaSNMP traps and TL1), event de-duplication, and flexible notifications (via SMTP,XMPP, and many other protocols). The software is free under the GPLv2 license,and commercial support, training, and consulting are available.OpenViewOpsview is enterprise network and application monitoring software designed forscalability, flexibility and ease of use. Opsview has been in development since2003 (originally based on Nagios) and is released under the GNU GPL license.Opsview is enterprise network and application monitoring software designed forscalability, flexibility and ease of use. Opsview has been in development since2003 (originally based on Nagios) and is released under the GNU GPL license.Orion SolarWinds Orion Network Performance Monitor enables you to detect,diagnose, and resolve network outages and performance issues. It offers network-centric views that are designed to deliver the critical information you need.Pandetix MSOware is a web based service for monitoring, managing, reportingand notification of events for IP enabled devices. MSOware monitors your hostwith the selected tool. There is a free trial version.Pandora the Free Monitoring System is a Free Software set of programs, set underthe GPL license, that monitors and detects network systems using remote tests(ICMP, TCP Sweep, Network scan, SNMP monitoring...), or using local agents tograb application/system datga (has agents for Linux, AIX, HP-UX, Solaris andWindows XP,2000/2003). Pandora FMS is able to fire alarms, draw graphs andkeep event history for each element using a SQL backendQ3ADEReconnoiter is a monitoring and trend analysis system designed to cope with largearchitectures (thousands of machines and hundreds of thousands of metrics).Redcell from Dorado Software includes: Discovery, Resynchronization, Topology,Database Services, Data Archiving, Scheduling, Auditing and Logging, GroupOperations, CMDB and Event Monitoring. Automated Remediation andConfiguration lets administrators find, configure and monitor applications andservices, plus converging technologies.networking, security, systems, andstorage.from a single console.ScriptLogic Perspective addresses the problems associated with bandwidth,network and application performance, and connectivity that are often issues for ITdepartments. Perspective supports multiple sites, is easy to use.ServersCheck is a web based monitoring tool for monitoring networks and servers(e.g. temperatures etc.)SevOne provides a distributed network performance management platform thatdelivers a scalable and comprehensive real-time monitoring, troubleshooting andreporting solution that supports over 15 collection methodologies such as SNMP,NetFlow, ICMP, IP SLA, WMI, vCenter API, XML, and JMX.Spectrum (ex Cabletron, then Aprisma then Concord Communications then CA).Network Tool specialized in Fault Management and Root Cause Analysis engine.Helps optimize MTTR and MTBF.The tool is modular in that it can alsomonitor/manage QOS,MPLS/VPN,Multicast Network, Device Configurations.StableNet Carrier-Grade performance management tool, built upon openstandards. Supports active (Ping, SAA) and passive (SNMP, RMON, NetFlow,

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

9 of 33 26/10/2012 14:36

Page 10: Network Monitoring Tools

SFlow) measurements. Integrated topology/inventory, SLA/SLM, reporting.Sun SolsticeSwitch Center Network management and monitoring software using SNMP (v1-3)network devices from any vendor including network discovery, logical andphysical (Layer 2/3) network topology mapping, performance monitoring,real-time reports and pro-active alerts.SwitchMonitor tracks traffic flows in, out, and through your network switches.SysOrb monitors both network equipment and servers/applications and is accessedvia a web interface. Monitoring is done with Agents and IP and SNMP polling.SysOrb comes with an embedded database for stats, alert notification module,report generator etc.SysUpTime is a free distributed network/systems management product. Itprovides users out-of-box capabilities to efficiently and proactively managenetworks of any size.Tembria Tembria Server Monitor is an affordable server monitoring platform withdeep support for Windows server monitoring plus support for Linux and SNMPdevices too.The Dude is a free network monitor will automatically scan all devices withinspecified subnets, draw and layout a map of your networks, monitor services ofyour devices and alert you in case some service has problems.Verax NMS is a service availability and performance monitoring systemsupporting a range of network elements (e.g. Windows and Linux hosts, ATMswitches, Brocade and Juniper routers, ADVA Optical Networking FSP),applications (e.g. Apache Tomcat and WebSphere servers, Oracle and MicrosoftSQL Server databases), virtualisation (e.g. VMware vSphere) and data centerdevices (incl. power supplies, air conditioning, sensors and detectors).WhatsUp Gold discovers and maps your network, uses SNMP v1-3, WMI andcustom scripts to monitor resources and applications on your devices, notifies youvia email, SMS, pager, etc., when problems occur, and provides historical andreal-time reporting through a Windows console interface, full Web interface, andmobile interface. WhatsUp Gold is available for single networks and as adistributed solution for managing large, geographically dispersed networksZettaView is a 24/7 monitoring, trend analysis, reporting, and alarm managementsystem for LAN, WAN, and ATM that stores information at a 10 secondgranularity on local probes.Zoho Corp ManageEngine OpManagerZyrion Traverse a network, application & server monitoring platform with openAPI, correlated views of IT "services" and integration with flow analysis tools.

Commercial Monitoring Tools, not integrated with an NMP [Contents]

Analyzer/Sniffer | Application/Services/Systems monitoring (Hosted/managed monitoring services) | Emulators |Flow Monitoring | FTP | IPAM | IT Search | Network Security tools | SNMP Tools | Topology/Traceroute | VOIP |Video-over-IP

ActivXperts Network Monitor monitors servers and workstations in your LAN and WAN. The softwaremonitors Windows, UNIX, LINUX and Novell servers for availability.AlertCenter provides monitoring, alerting and corrective action automation scheduling. It is part of the MKSToolkit.AlertSite measures, diagnoses, notifies and reports on the availability and performance of servers, URLs, webapplications and virtually any Internet connected device or application.Analyzer/Sniffers, see also public domain capture tools.

ACE Analyst from OPnet is a transactional analysis solution, based on network packet captures.Anritsu provide the MD1230 portable network and IP network performance monitor.Anasil , Analyzer is a software network analyzer of Ethernet networks for Windows 95/98/NT/2000.

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

10 of 33 26/10/2012 14:36

Page 11: Network Monitoring Tools

Anue Systems, makes a Net Tool Optimizer that is used to connect multiple monitoring tools to anetwork link, or one tool to multiple links. This is a hardware device. It is similar to Gigamon.APCON, manufactures a physical layer matrix switch to remotely move and share network monitoringtools using a software interface or scripting.ClearSight provide a Monitoring/Analysis/Network Recording/Sniffer (up through 10Gbits/s), Packetgenerator. ClearSight's solutions are graphically oriented.Capsa Capsa performs real-time packet capturing, 24/7 network monitoring, protocol analysis, in-depthpacket decoding, and automatic expert diagnosis.CommView is a program for monitoring Internet and Local Area Network (LAN) activity capable ofcapturing and analyzing network packets. It gathers information about data passing through your dial-upconnection or Ethernet card and decodes the analyzed data.Cubro provide a network processor based packet handling engine (packetmaster) and software to sniffand analyze packets on multiple links and can eliminate duplicates appearing on multiple links.Distinct Network Monitor is a software packet capture and network protocol analyzer for Windows thattranslates complex protocol negotiation into natural language, pinpointing where errors occurred.Easy Service Monitor (ESM) will monitor network services to see if they can work properly with apredefined time interval. It runs on Windows.EffeDetect an HTTP packet sniffer, protocol analyzer and file reassembly software based on windowsplatform. Unlike most other sniffers, it is dedicated to capture IP packets containing HTTP protocol,rebuild the HTTP sessions, and reassemble files sent through HTTP protocol. Its smart real-timeanalyzer enables on-the-fly content viewing while capture, analyze, parse and decode HTTP protocol.EtherDetect provides a connection-oriented view for analyzing packets.Etherpeek for Windows is an Ethernet network traffic and protocol analyzer designed to assist introubleshooting and debugging mixed-platform, multi-protocol networks.Finisar provide sniffer like stand alone network test and monitoring devices for 10/100/1G and iSCSI,Infiniband and Fiber Channel.Gigamon Provide a hardware switch to enable connecting a sniffer to multiple links.IPCopper provide an appliance for monitoring network trafic by sniffing it.IP Traffic Monitor provides real-time information about network utilization for each application andstore information into a database for history review.Javvin Packet Analyzer software-based network analyzer monitors Ethernet and WLAN traffic in realtime, and decode packets and displays in.LANExplorer provides packet capture, decode, filtering, matrix, host table, statistics, theresholding andalarms for Windows hosts.LANGuardian captures and analyzes the traffic flowing through your network switch, stores it in adatabase, and displays the details in a web browser.LANSurveyor SolarWinds automatically discovers your LAN or WAN and produces comprehensive,easy-to-view network diagrams that integrate OSI Layer 2 and Layer 3 topology data including switch-to-switch, switch-to-node, and switch-to-router port connections.LANWarch Windows software-based network packet analyzer monitors traffic in real time and displaysa wide range of statistics in graphical form.LinkFerret tools are designed to provide a comprehensive set of monitoring utilities and packet sniffersto be used for capture, statistical analysis, and protocol decoding in your Ethernet network. It runs onWindows 98/NT4/2000/XP.Netquest OptiCop Converger: Optimizes Network traffic for better utilization of network monitoringtools through the use of link aggregation, packet filtering and interface/protocol translations capabilities.Network Probe is a Windows or Unix network monitor and protocol analyzer providing a picture of thetraffic situation on your network and enables you to monitor network traffic in real time, hunt down,identify, and isolate traffic problems and congestions on your network.NetworkActive PIAFCTM (Packet Intercepting, Analyzing, File Constructing Traffic Monitor) networktraffic analyzer; packet/protocol analyzer, HTTP file rebuilder, graphical traffic mode (graphicaloverview of current network communications), and traffic statistics mode. There is also a free forpersonal and commercial use version that provides a network traffic analyzer plus a packet/protocolanalyzer and HTTP file rebuilder.NetScope Graphical network visualisation tool with per-second resolution, real-time and historical data.Observer from Network Instruments is a network analyser (Packet sniffer) for 10/100/1000 100/1000

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

11 of 33 26/10/2012 14:36

Page 12: Network Monitoring Tools

Full Duplex and Multi trunked Ethernet links, wireless a,b an d g, token ring and FDDI.PacketBoy is a Win9x/NT & Unix packet sniffer analyzer decoder package capable of decoding manyof the commonly used LAN protocols.PRTG Traffic Grapher Windows software to monitor bandwidth usage and other network parameters viaSNMP. Has a builit in packet sniffer. Freeware also available.Sniffer resource for product information on both portable and distributed Sniffer protocol analyzers,network troubleshooting white papers, Sniffer University training courses, and free protocol stackposters.Sniff'em is a Windows based Packet sniffer, Network analyzer and Network sniffer.Ultra Network Sniffer for Windows lists network packets in real-time from multiple network cards andalso supports packet capture.Unsniff Network Analyzer. Scriptable and extensible network analyzer with fresh new views ofprotocols URL.VSS Monitoring provides a range of distributed traffic capture systems and taps from 10/100 to 10 GigEfor complete, selectable and centralized visibility of networks, improving network analyzer reach andefficiency.WANGuard Sniff is a software sniffer that provides centralized visibility of networks, including trafficaccounting reports, traffic tops, IP graphs, traffic anomalies detection.WildPackets Omni fault analysis platform for optimizing network services and improving uptime onenterprise networks.

Applications/Services/Systems monitoring (Hosted/managed monitoring services)AccelOps integrated monitoring solution, which does security, performance, availability and changemonitoring for data centers and cloud services.Advanced HostMonitor is a system management tool that continuously monitors servers' availabilityand performance. In the event of network errors, HostMonitor will alert the network administrator.Alchemy Network Monitor monitors network servers: TCP/IP, ICMP, IPX/SPX, Oracle, MS SQL, NTEventLog, SQL query, HTTP URL, NT service state, maintains log file and sends notifications if theserver goes down. Also marketed in Europe as Alchemy Eye.AlertFox website and web application performance monitoring. Supports transaction monitoring of sitesthat use complex HTML, AJAX, Flash, Flex, and Silverlight. In-depth root cause analysis for trouble-shooting sporadic issues.AppQos Live! from iTrinergy provides rapid answers in identifying, in real time, the causes of poorapplication and network performance problems.Aqualogic Monitoring System helps you to monitor your mission critical applications without installingany agents/software on the production or pre-production environments. AMS lets you to configure thefrequency of the monitoring attributes to as low as 15 seconds, which results in real-time monitoring.Argent Argent has three products - The Argent Guardian, a real-time monitoring and alerting system forNT/2000 servers as well as SNMP-compliant devices; The Argent Predictor, a trend-analysis productfor both NT/2000 servers and SNMP devices; and The Argent Sentinel, a web monitoring product.Automate Enables a wide range of automation imperatives encompassing data aggregation, applicationintegration, system/application/network monitoring and problem resolution, disaster recovery, file/databackup etc.BBMonitor Windows bandwidth test software to monitor bandwidth usage and speeds. LAN andInternet bandwidth meter.Catchpoint provides web performance monitoring services relying on synthetic agents on multiplelocations around the world and JavaScript based performance monitoring of actual end users.Chariot evaluates the performance of networked applications, performs stress tests of network devicesand predicts networked application performance prior to deployment.CleverEye provides an availability monitoring software for servers, network appliances, databases andapplications.Congruity Inspector collects and presents network LAN-WAN traffic as hyperlinked relationships. Viewsystems, ports, protocols, applications, and content in a relational context so you can understand howeach affects everything else. In 3 clicks, Inspector quickly identifies issues associated with slownetwork, WAN problems, poor application response, connectivity, access control and security.CueVision Windows based tool to monitor website, servers and network devices.DotCom-Monitor is an External Web Monitoring Service that brings together Monitoring, Reporting,

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

12 of 33 26/10/2012 14:36

Page 13: Network Monitoring Tools

Notification, Escalation and Analysis for HTTP, HTTPS, SMTP, POP3, DNS, FTP, ICMP and SOAPapplications.Edoceo provides network and application monitoring services, built with PHP on top of Nagios,pnp4Nagios and OpenVASegInnovations provide Enterprise Management Products with capabilities involving the ability to offersubscription based remote monitoring through a web browser console, real time monitoring andproblem diagnosis and proactive alerts.Express Metrix Network Inventory Software Hardware/software inventory and application usagemetering tool for Windows-based network environmentsExtraHop Networks Application Performance Management system provides passive, real-time analysisfrom L2-L7 for proactive early warning and accelerated troubleshooting across network, web, database,and storage tiers, spanning physical and virtual environments. It combines the advanced troubleshootingcapabilities of Network Performance Managers with the superior application-level visibility of UserExperience Monitors.Eye-on Bandwidth is a bandwidth monitor designed for scalability, speed and security . It has multipleuser levels with different privilegies, and is managed by a web interface.EZ-NOC provides a website monitoring tool using distributed servers around the world. It also includesnetwork monitoring tools like: DNS, EMAIL, WEBSITE, SSL, ISP Speed Test, What Is My IP andWhois.Ganymede provides performance management for clients,servers, applications, and the network as anintegrated system.Gomez provides diagnostic website and web application monitoring services from 12,000+ globaltesting locations that help companies to measure end-user web performance and troubleshootapplication performance problems.Hosted/Managed Monitoring Services

Alaloop provides through a managed service/SaaS mode (internet or intranet) ready to usedashboards to monitoring networks and housing SLA as well as application peformances(QoSand QoE)Alertra Checks (http, https, ping, SMTP, POP3, IMAP4, FTP, TCP) web server from multiplestations around the world.iGLASS Network Monitoring Services monitors your network's performance by providing 24/7NOC monitoring services for your network, servers and critical applications.GMS Live Expert blends traditional IT Help Desk, with remote management software to ensureReseller Partners, and their end customers have one vendor responsible for services and remotemanagement.LogicMonitor is a SaaS-based automated monitoring tool that monitors networks, servers, virtualenvironments, applications, and storage from a single pane.monitis provides a "24 x 7" website, applications, systems, network and web traffic monitoringservice helping users quickly identify faults and deficiencies to ensure continuous operations oftheir IT infrastructure and maintain business operations that provide the ultimate web experience.Particularly Monitis provides personalized Ajax dashboard interface, checks server performanceand availability, generates uptime reports, tracks visitors, checks CPU, memory and other systemsresources, and alerts its users in case abnormalities are detected. External end-user checks areperformed from geographically dispersed servers as well from customer locations. Internal checkscan be performed inside of network firewalls through smart agents.Praetorian Guard is a Hybrid SaaS solution for network and user monitoring, notification andreal-time reporting through a Windows GUI. It can inventory installed software and hardware,monitor event logs, user activity and overall computer performance. It is designed to support bothcentralized administration and distributed management.pingwy Monitoring monitors remotely services like http,https,ftp,dns,telnet,ssh,pop,imap,smtpand alerts you by mail and SMAS when the service goes down by mail. It also allows you to havea precise view of your server's access and load times upon different periods.SecureMyCompany provides hosted, On Demand network and systems management software fora low monthly fee. Solutions include SNMP, WMI, Event Log and many more monitoringfeatures.SiteMonitor is a website uptime and measurement tools that verifies the performance of

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

13 of 33 26/10/2012 14:36

Page 14: Network Monitoring Tools

non-transactional websites up to every minute from 25 points of presence around the world.Speed Test is a meter that monitors your internet connection, web site, cpu, memory, Hard Drives,Wifi, LAN, Processes and much more all in real time and will store all data recorded into an log,so it can be easily imported into almost any application. This data can be used to help in resolvingproblems with your internet connection or computer. Speed Test allows you to view the data inmany ways.TelcoAlert is a hosted solution that monitors and notifies for testing fax systems and circuits.Visual Performance Manager provides enterprise service intelligence to help organizations deliverbusiness services.WatchMouse offers professional remote server monitoring services from 16 locations worldwide:http, https, ftp, pop, imap, dns, etc. Alerting by email, SMS, IM, and pager. Extensive reporting,also useful for SLA monitoring.

Heroix Longitude web-based, agentless application monitoring tool.ICmynet.DNS is a free web service for testing the health of DNS domains and DNS servers. More than30 tests in less than a minute, visualization of DNS errors and server availability.Integrien features centralized, agentless monitoring of web and data base servers/applications. Used tobe SiteAlive from CreationPoint.IPCheck Server Monitor Network Up-/Downtime Monitoring Monitors critical network resources anddetects system failures or performance problems. Freeware available.ACE Live (formerly Network Physics NetSensory) as of Nov '07) passively monitors network trafficproviding utilization by protocol, application, host groups as well as topology, re-try and response timeinformation. Good for real-time monitoring and trouble-shooting, also provides alerts and export ofreports to web accessible pages.GFI Network Server Monitor Monitors your network & servers for failures and fixes themautomatically. Checks Exchange Server, SQL, Oracle, HTTP/FTP, Disk health & space, event logsIMMonitor, is network monitoring software that can monitor chat content, email content and websurfing activities in your network.internetVista remotely monitors web sites and Internet services for availability (http, https, smtp, ftp,nntp, tcp). Notifications sent via email and SMS. Monitoring centres in United States and EuropeLabtech Software includes the following features: Remote Monitoring, Software & Hardware Auditing,Remote Control, Software Deployment, Scripting, Automation, Auto-fixing Software Update,Ticketing, and timekeeping.MonitorIT monitors, detects, alerts, diagnoses, measures, collects and reports on WindowsServers/Workstations, SNMP & SYSLOG Devicesmon.it.us is a free web-based service that grants you a suite of tools for monitoring performance,availability, and traffic statistics. You can establish your website's response time and set up alerts forwhen a service becomes unavailable. You can also set-up weekly, automated benchmarks to see ifchanges you.ve made impact speed and performance either positively or negatively.MonitorMagic - Server & Network Monitoring is a proactive monitoring/alerting tool for Windows2003, 2000 and NT servers, workstations and SNMP devices.N-able OnDemand MonITor Online provides 24×7 proactive network monitoring through status,notification and performance reporting without any network reconfiguration.N-central is an IT governance platform for the mid-enterprise that manages information technology andsecurity services from a business perspective.NetMon hardware box that monitors network/service components including: routers; firewalls; file,web, dhcp, dns, syslog servers. Also provides protocol usage, bandwidth utilization, top web users anddestinations, latency, up/down time, TCP/IP services.NetStatus workgroup level monitoring application designed to be used in situations where you need tomonitor anywhere from 1 to 50 servers or devices on a network.NetVizor provides network monitoring and surveillance software to track workstations and individualusers that may use multiple PC's on a network.NetworksA-OK appliance, provides end to end monitoring of your network and applications (web,email, database) performance and security.NimTech provides NIME an end-to-end TCPIP performance characterization tool based on aclient/server architecture. It allows launching various network tests from & between any location toquantify in real-time the performance of a TCPIP network between two endpoints hosts.

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

14 of 33 26/10/2012 14:36

Page 15: Network Monitoring Tools

NPS Network Performance Services provides network, system, application, and security monitoringproducts and services via a 7x24 Network Operations Center. All products and services includeautomated and customized alerting, and web based performance reporting.OPNET Panorama continuously monitors thousands of system and application metrics within eachserver, across all tiers, and automatically spots performance anomalies with advanced deviationtracking.Orion Applications Performance Monitor brings monitoring, alerting, and reporting capabilities toapplications and servers. Discover your applications and get the visibility you need into applicationperformance and the underlying operating systems and servers they run on.Overseer Network Monitor is a W2K network monitor providing easy installation, MicrosoftManagement Console configuration, and runs as a service to provide rock-solid reliability. Monitorswebsites, network devices, servers, services, and notifies administrators via Email, pager, cell phone, ornet send.PagerEnterprise is an automatic system, server and network monitor and notify remote system andnetwork managers when important events occur. It runs on Windows NT/2000 to monitor servers,logfiles, services, SNMP Mibs, routers, TCP/IP, SNMP, disks, programs, web pages, devices, power,and more across Windows NT/2000, Novell NetWare, UNIX, OpenVMS, HP3000, AS/400, IBM,Linux and others.PRTG Traffic Grapher Windows software to monitor bandwidth usage and other network parameters viaSNMP. Freeware also available.RSP is a cross-platform, agent-based network/server monitoring, analysis, & hardware tracking programwith a web interface and an API for plugins.Server Nanny Network Monitor monitors servers and network devices, sends problem notifications,performs actions, and logs performance data.Server Supervisor monitors the availability and performance of various network resources. The programapplies resource-specific approach to handle all cases from regular local workstations to complex weband database servers. It can be used by several people simultaneously. They can use a web interface toconfigure monitors and receive custom alert notifications depending on their roles. The program comeswith built-in statistics analysis tool.ServicePATH from Trendium provides plug-and-play service intelligence system that can collect andsynthesize data from networks, applications / business processes and OSS. This synthesized data modelis then used to assess and assure service delivery in real-time. The system identifies anomalies as theyoccur, pinpointing their cause and analyzing their effects on services and the business. It can alsoautomatically initiate corrective action.SimpleServerMonitor is an easy to use network server monitoring tool. It supports Ping, HTTP/HTTPS,FTP/FTPS, SMTP/SMTPS, POP3/POP3S, IMAP/IMAPS, and Custom monitors (supports SSL/TLS).SLA Commander integrates with ACE (also from OPNET) to proactively capture traces of problematictransactions.SuperAgent Monitors all TCP application packets as they travel from the network through the datacenter and out again, providing a way to measure network round trip time, server response time, datatransfer time.uptime software IT Systems Management that monitors, measures and manages across locations(multiple datacenters) environments (physical and virtual), platforms (Windows, Linux, Soalris, AIX,VMware, Novell, HP/UX, etc), applications, and networks.Vigilix event detection and notification software for applications.WatchTower system monitoring and management software application that runs within a Web-basedportal environment.

Big Brother and its clone Big Sister consists of local clients that test system conditions and the availability ofnetwork services, and send these status reports to one or more DISPLAY servers where these reports appear aslittle dots on a web page, or PAGER servers that notify administrators about system problems.DUMeter is a Windows tool to provide a visualization of the data that is flowing through your computer'snetwork connection. It includes includes a reporting facility, a notifications and events systemDSLReports provide measurement reports (e.g. speed tests, security scans, loss).elkMonitor monitors your sites around the clock from servers across the globe, elkMonitor will alert you tosigns of trouble.Emulators

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

15 of 33 26/10/2012 14:36

Page 16: Network Monitoring Tools

Anue Network Emulators are used to generate network latency, delay variation (jitter), packet errors, biterrors and other network impairments in order to test application performance over a WAN prior todeployment.BreakingPoint provides testing tools for application, performance, and security of content-awarenetwork devices.PacketStorm IP Network Emulators reproduce the unfavorable conditions of IP Networks and WANs ina controllable and repeatable lab setting.Shunra develops testing and evaluation tools for internet and intranet based network technologies andproducts.

Engineer's Toolkit is a bundle of 49 networking tools that monitors and alerts on availability, bandwidthutilization, and health for hundreds of network devices, provides network diagnostics for troubleshooting andresolving complex network, offers an array of network discovery tools that facilitate IP address management,port mapping and ping sweeps, and eases management of Cisco® devices with tools for real-time NetFlowanalysis, configuration management and router management.Flow Monitoring

ACE Live Netflow module uses integrated web-based dashboards to provide a business-centric view ofnetwork utilization and application performance to prioritize problem resolution and effectively manageSLAs.Aurora Network Traffic Analysis and Evaluation from IBM.Caligare Flow Inspector from Caligare is a Netflow monitor and analyzer with many graph statistics,low level searching, application recognizer and utilization maps. Available in the US as NetIMonitorthrough Caligare partner Net US.FlowMon is a NetFlow monitoring solution (IP flows), providing wire speed processing with no packetloss, for all types of networks from 10Mbps to 10 Gbps.ICmy.NetFlow analyzer is an application for deep network traffic investigation, analysis and reporting.It is based on NetFlow statistics, exported from your routers and switches to ICmy.NetFlow server.Highlights: Web based Windows and Linux application,Cisco NetFlow 5 and 9 support (or equivalent:j-Flow, NetStream etc.),Flow statistics based on IP subnets, Hosts, Applications, Protocols, QoS, ASnumbers.InMon provides traffic flow monitoring tools for high-speed switches. The software is able to monitortens of thousands of switch ports continuously, producing real-time top flows charts, and site-wideapplication-level traffic matrices.Intermapper Flows from Dartware is a NetFlow and SFlow collector and analyzer that lets you seeexactly where traffic comes from, who's sending it, and what it's used for. Runs on Windows, MacOS X,Linux, and Unix.NetDetector from Nicksun a non-intrusive network security monitoring product that (when deployed aspart of your data communications infrastructure) inspects traffic flows, detects the activities of intruders,sets alarms, makes continuous copies of data from the network, and analyzes every packet in thenetwork in real-time at production network traffic rates.Netflow from Cisco.Netflow Analyzer is a product specifically meant for Traffic Analysis and Network Forensics, therefore,gives an in-depth visibility into the network traffic, bandwidth utilization, top talkers in the network etcfrom various flows, such as, NetFlow, sFlow, jFlow, IPFIX, Netstream etc. NetFlow Analyzer also haspartnership with Cisco and 3COM.NetFlowAuditor profiles flow data to help organizations quickly identify and alert on networkanomalies to help resolve performance problems and manage network security and compliance acrossbusiness services and applications. Highly fault tolerant, scalable and granular. Learns intensivenetwork profiles with real-time, trending, multiviews, scheduled reporting and alerting. ipv6 compliant.Supports Cisco NetFlow v5/7/9, IPFIX, sFlow, jFlow, NetStream and Flexible NetFlow on Linux andWindows.Netflow TRacker integrates with Visual Performance Manager and uses NetFlow data collected fromthe routers already deployed throughout your infrastructure.NetQoS uses NetFlow to identify when and where problems are occurring or occurred, identify virusesusing real time reporting, remove unwanted traffic instead of unnecessarily upgrading links, view andplan the impact of applications on the network over time.NetIntercept is delivered as a complete system, with hardware and software pre-installed, and captures

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

16 of 33 26/10/2012 14:36

Page 17: Network Monitoring Tools

in real-time and provides later on demand batch analysis of the data.Nexvu Analyzer analyze, classify 3000+ applications and protocols and report 35 metrics related tohealth, utilization and performance at line speed. It is an application aware network performancemonitoring tool with JAVA GUI and full SNMP capabilities. Nexvu also has packet capture and analysisengine and can work as a netflow director. It is available as a software / real appliance and as VMwarevirtual applianceOrion Netflow Traffic Analyzer enables you to quantify exactly how your network is being used, bywhom, and for what purpose. Find the bottlenecks, and shut down the bandwidth hogs.Packeteer provides network traffic characterization, using signatures derived from network layers upthrough 7, it can then use this information to do TCP rate control (using CoS/ToS. DiffServ & MPLS) toensure timely performance.PRTG Traffic Grapher Windows software to monitor bandwidth usage and other network parameters viaSNMP. Supports Netflow. Freeware also available.Scrutinizer NetFlow & sFlow Analyzer NetFlow and sFlow Analyzer provides detailed networkutilization information for the users and applications causing the most traffic using a variety offlow-based technologies.SevOne Dedicated NetFlow Collector (SevOne DNC) is a dedicated appliance for organizations withheavy NetFlow reporting, analysis and troubleshooting requirements, providing in-depth data abouttraffic flows in terms of applications, protocols and hosts and their impact on the network.sFlow probe from InMon is a monitor/SPAN port probe capable of continuously monitoring applicationlevel traffic flows at a full 1Gigabit (over 1,500,000 million packets per second).StealthWatch provides flow-based network performance and security monitoring for enterprisenetworks.WANGuard Flow is a NetFlow analyzer that provides centralized visibility of networks, includingtraffic acccounting reports, tops, IP and ASN graphs, traffic anomalies detection.

FTPFastCopy provides reliable, secure, bandwidth controlled, automated, enhanced file transfer.Trellian Trellian FTP is a file transfer client that allows you to transfer files between your PC and anyFTP server on the Internet.WS_FTP for windows provides a fast and easy way to move files securely (with SSL) over the Internet.there is a client and server

HipLink is a one or two-way wireless data and messaging solution that enables software used for networkmonitoring, field force automation, email, customer support, help desk, to communicate with data enabledwireless devices, including digital cellular phones, PDAs, one-way and two-way pagers.Holistix Web Manager is software installed inside the firewall that monitors and manages all web systemcomponents including web servers, databases, urls, applications, etc. Holistix also has a service, calledRemote Monitor, that Measures your site's performance 24 hours a day from monitoring locations around theworld.Internet Control Panel performs checks every five to ten minutes on the availability, performance and contentof your website. It also checks other important internet services you depend on; email, file transfer andauthorization processes.IP Address/Asset Management

Inventory Genie is a Discovery based Inventory system, that can automatically build an inventory onany subject (specially network & system inventories ) using simple wizards, parsers and multipleprotocols (icmp,snmp,sql,http,telnet, ssh,wmi,registry,open ports,...). It can be used to populatesCMDBs. It has many pre-made discovery rules. It has the ability to perform remote actions on selectedelements based on the information in its DB, thus enables provisioning.PC Inventory Advisor automatically queries all computers on your network and reports back withdetails about OS and hotfixes, installed software and hardware, network alerts and visual comparison ofconfigurations.Remote Asset Tracker is a network inventory and PC auditing software designed specifically formedium and large companies.Total Network Inventory is a PC audit and Network inventory software for office and large scaleenterprise networks. Total Network Inventory interrogates all computers and notebooks on a networkand reports back with complete information about OS, service packs, hotfixes, hardware, software,running processes, etc. on remote machines. This information is added to the centralized database and

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

17 of 33 26/10/2012 14:36

Page 18: Network Monitoring Tools

network administrators are able to generate reports about each or all PCs (notebooks) on a network. Theprogram is agent-free and requires no software installed on remote machines (laptops).

ISDNwatch is an ISDN network management suite for your ISDN routers.IT Search

Paglo discovers everything IT and allows users to search and monitor their server, network, user, andconfiguration information. The Paglo Crawler is open source and it is free to get started with theservice.Splunk allows you to search and navigate IT data from applications, servers and network devices inreal-time. It includes logs, configurations, messages, traps and alerts, scripts, code, and metrics

Keynote Systems is a supplier of software and services for measuring and managing the responsiveness ofweb-based applications. KeyNote RedAlert is aWeb site monitoring service that can perform end-to-endchecks of your a site every 5 or 15 minutes. It can also monitor DNS, email, news & telnet servers.MeterWare for Windows 95/NT & UNIX from Technically Elite.Metrica Network Performance Reporting (NPR) is a performance monitoring toolset being used by telecomsoperators to manage the quality of service and the capacity of their networks.NATManager.NEPM (Network Equipment Performance Monitor is a two part software system that captures and analyzeslogged performance data from IP networked equipment and reports it via e-mail and web pages. It can behosted on either a Unix or WinNT system or a combination of these.Network Security Monitoring Tools

GFI LANguard network vulnerability scanning, patch management and auditing solution.Lan-Secure Security Center: Network security monitoring software that provides real-time intrusiondetection and prevention by enforcing network policy organization rules and online network usersactivity management.Net Detective iPhone application Using low level techniques common to NMap and other powerfulnetwork auditing tools, NetDetective will expose open TCP ports, UDP ports, and UPnP/Bonjourservices running on your network.Network Enforcer Network security software that monitors user behaviors using security filters.Nsauditor is a network security scanner that allows to audit and monitor network for possiblevulnerabilities,checks methods that a hacker might use to attack it. Over 45 network tools formonitoring, scanning, sniffing, enumerating and gaining access to machines (access to secured sharesand confidential files, also detects and logs network access to shared folders).QRadar isolates the source and identifies corrective measures for dangers hiding in daily networkactivity.Sentinel analyzes an up-to-date model of the production network to perform automated and systematicconfiguration audits and diagnose device misconfigurations, policy violations, inefficiencies, andsecurity breaches.System Shepherd delivers end-to-end application visibility (from end-user experience to network toapplication internals). It is provided as a software service that can optionally be coupled with managedservices. The level of optional management is flexible. It can range from Managed Alerting to multi-dimensional SLA-based application management.Techout helps companies measure and optimize the speed and availability of critical online applications,from establishing performance objectives to maintaining peak performance, Techout helps companiesmeasure and optimize the speed and availability of critical online applications.WFilter is an Internet filtering software that can help organizations to monitor and manage all Internetbehaviors on their networks. You only need to install WFilter in one computer to monitor your wholenetwork.ZoneRanger from Tavve is a secure network management proxy appliance for the DMZ; it proxiesSNMP GET/SET, SNMP Traps, syslog, NetFlow, sFlow, IP status, and TCP port status, delivering theproxied traffic to a network management platform or tool.

Network Tools has a suite of online IP and DNS tools that can be run both locally and remotely to check forany Network Errors.Net-One-1, monitors your company's network devices 24 hours a day, seven days a week.NetOps provides a set of tools for monitoring, logging and reporting network status, focussing on preventivemaintenance.NetReality provides monitoring and QoS shaping on all OSI layers, from 1 - 7 on WAN links. Real-time and

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

18 of 33 26/10/2012 14:36

Page 19: Network Monitoring Tools

historical reports are provided.NetScout Drawing on information generated by NetScout's application-aware probes, intelligent active agentsand data collected directly from network devices strategically placed throughout the WAN, SAN, and LAN,the nGenius Performance Management System monitors, troubleshoots, performs capacity planning andreports on the application traffic flowing across the network.NextPointS3 provides the ability t define, measure, baseline and report on service levels at many levels fromthe core network to end user applications.PingGraph is a multi-threaded graphical TCP/IP network monitoring and diagnostic tool for Windows 95 andNT.ResponseNetworks provides tools for network service level monitoring and measurements.SAA Service Assurance Agent built into Cisco IOS release 12.0(5)T allows measuring response time, netresources, availability, jitter, connect time, packet loss and application performance.SftpDrive Maps any SSH server as a Windows network drive. Provides transparent and secure integration ofthe remote filesystem into Windows without requiring additional server software or configuration.Silverback's InfoCare delivers real-time and historical information on faults, assets, performance and securityacross networks, systems and applications through a unified Web-based interface.SNMP Tools:

AdventNet SNMP API can be used to build system management, application management and networkmanagement applications and applets. It includes class libraries and Java beans for Java SNMPdevelopment, as well as a complete MibBrowser for interacting with SNMP enabled devices. TheAdventNet Agent Toolkit Java Edition provides a complete GUI-based development environment tobuild standalone SNMP agents, Multi-Protocol agents, and standalone TL1 agents. Also see AdventNetManageEngine JMX Studio a 100% Java-based development environment that provides Java, J2EE, andEAI middleware application developers, the ability to build JMX and SNMP-based manageability fortheir applications. It also comes with options for other protocol adaptors like HTML, RMI, CORBA,SOAP, and AMI adaptor for plugging into different types of management consoles.Denika Performance Trender is a trending tool that collects and graphs SNMP details for interfaceutilization, CPU, Memory, Disk Space, Frame Relay, Database Resources, QoS, Port Errors etc.LoriotPro a generic SNMP managerMIW Multiple Interface Watcher is a graph utility that shows the utilisation of up to 20 differentinterfaces. The data is requested from the devices using SNMP. MIW is an advanced development ofInterface Traffic Indicator that focuses more on the utilization overview of many interfaces than onmuch information of one interface.OidView is a modular network management analysis tool that uses the SNMP protocol to talk to variousagents and devices on a computer network, offering a variety of plug-in modules like a MIB Browser,MIB Manager, Trap Manager, PDU Capture, etc.NetVoyant Provides SNMP-based performance metrics for managing network infrastructure, devices,and servicesOpen NerveCenter is a network management platform, based on SNMP, that is extensible using PERL.NerveCenter correlates events in real time from network and security devices, UNIX and NT systemsand applications to improve availability, performance and security.OPENXTRA has a set of SNMP utilities.SNMP Explorer provides a tree view of your SNMP managable devices, provides a way to talk to orfrom the devices, provides a flexible log of transactions, and permits you to transact with the deviceswith simple yet powerful scripts.SNMP Informant is installed on Windows hosts to enable them to provide SNMP information.SNMP ResearchSNMP Sweep Engineer's Toolset queries an IP address range to determine which IP addresses are usedand which are unused.TrapBlaster SNMP trap management engine that receives, filters and converts SNMP traps. They maythen be forwarded to your network management applications.Unbrowse SNMP. A visual SNMP MIB browser, compiler, walker.XRate1 SNMP based network monitoring with statistical tags and OPC Server available.

StatScope from IP Sciences is an outsourced service providing a customized IP network monitoring andreporting capability.TelAlert from CalAmp a package for enunciating alerts and managing via pagers, email, pop up windows etc.

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

19 of 33 26/10/2012 14:36

Page 20: Network Monitoring Tools

Third Watch Server Monitor will allow you to monitor all of your critical servers and services on an IPnetwork and be notified of any changes in their status. It is a server monitoring program using TCP/IP. It canmonitor via Ping, HTTP, FTP or any other TCP/IP port.Topology/Traceroute based tools

EdgeScape from Akamai, maps user IP addresses to their geographic and network point of origin. Thisinformation is assembled into a vast knowledge base and made available to Edgescape customers.GeoBoy Allows you to view traces on a flat map or 3D globe. Incorporate geographical features such ascities, rivers, and political boundaries. Zoom in on areas of interest. Save and restore trace data. Rotateand manipulate maps. Update and customize geographical location cache files.NeoTrace provides graphical traceroute information.PingPlotter is an enhanced traceroute program for Windows 95/98/NT/W2K/XP.Route Explorer provides visibility, analysis and diagnosis of IP networks from a routing point of viewSMARTHawk from Solana Networks is an IP network monitoring and diagnostics tool focused ontopology, routing and qosVisualRoute a GUI based traceroute for Windows.

Triticom has software based network protocol analyzers, LAN traffic monitors, RMON probes, and an SNMPmanager.View2000 runs under Windows NT and has the ability to monitor multi-vendor network equipmentconfigurations, using flat file databases for speed and Oracle RDBMS for SQL report queries, and NOT usingSNMP.Viola Networks provides NetAlly and other tools that include a suite of tests to provide "true" Service LevelManagement (SLM), the ability to audit policies and Quality of Service (QoS), and automatically conductpreventive maintenance tests to discover hidden problems in the network.VisualPulse from DataMetrics provide realtime and historical reports on RTT & loss.VoIP (Voice over IP)

ACE Live VoIP Monitoring module supplies real-time and historical data in a business contextincluding both application performance and call quality.AppNeta Uses standard protocols (ICMP and/or UDP) to transmit small packet configurations acrossthe actual path the application takes. These packets vary in size, pattern, and spacing to fullycharacterize the network path. Detects signatures used to identify the likely cause of the problem,including MTU mismatch, QoS mismatch, duplex mismatch, media errors, path congestion, excessivepacket reordering, etc.Nectar Services Converged Management Platform (CMP) provides comprehensive VoIP monitoring andmanagement solutions including QoS Voice Quality Management, tailored for Avaya and Cisco UnifiedCommunications and Contact Centers.NetQuest from Tekno Telecom non-intrusively monitors converged wireline, wireless andnext-generation networks (including SS7, SIP, Sigtran, H.248, IMS, 4G and LTE) deriving businessintelligence and generating network call/session detail records for Troubleshooting, Call Trace, ProtocolAnalysis, Quality of Service, Inter-Carrier Billing, Fraud Prevention, Revenue Assurance, RoamerAnalysis, Surveillance, Billing Verification, and Alarming.netrounds is a cloud-based solution using distributed active measurement probes which are easilydownloaded and deployed on PC hardware. It supports concurrent monitoring of SIP signallingperfomance and ongoing call quality, as well as live IPTV MPEG monitoring in combination of flexibleTCP/UDP traffic generation up to 10 Gbit/s.NetQoS VoIP Monitor Network-based call setup and call quality monitoring product that tracks the callquality users experience, provides alerts on call performance problems, and isolates performance issuesto speed troubleshooting and MTTR.Orion VOIP Monitor proactively analyze VoIP quality across WAN links, as well as monitor theunderlying systems and protocols that the VoIP environment relies upon.Prognosis provides systems management software for performance monitoring of IP telephony, VOIP,availability, network management, Windows, UNIX and Linux.SevOne VoIP Telephony Monitoring, enables organizations to monitor the quality of experience fortheir VoIP applications from the same system and web-based console that they use to manage theirnetwork performance and availability. All of the SevOne capabilities for polling, monitoring, alertingand reporting are available for VoIP call quality metrics.Telchemy provides Voice over IP (VoIP) passive call quality monitoring and active Quality of Service

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

20 of 33 26/10/2012 14:36

Page 21: Network Monitoring Tools

(QoS) management. Designed specifically to be embedded into VoIP end-systems, management devicesand DSPs, Telchemy's non-intrusive monitoring technology, VQmonTM, is the only technology tomodel time-varying impairments and their effects on end-user-perceived quality in real-time.ZTI provide LANTraffic V2 and IP Traffic Test & Measure software testing tools for automaticgeneration of TCP and UDP traffic.

Video over IPCertUs Digital FaultLine (windows software) monitors, in real-time, ethernet MPEG-2 TransportStreams and provides QoE/QoS (ETSI TR 101 290) statistics for Video-over-IP, IPTV and VOD. A freeunlimited use run-from-pcap version is also available.

Public Domain or Free Network Monitoring Tools [Contents]

Application Monitoring | BGP | Finger Printing | Flow Monitoring | FTP | Host based network monitoring tools | IPAddress management (IPAM) | Mapping | Monitoring Infrastructures | Network Security | Packet Capture/AnalysisTools | Path Characterization | Ping | RRDtool | SNMP | Throughput tools | Traceroute

ANL Web100 based Network Configuration Tester tests the reliablity and operational status of your networklink.Application Monitoring

Alvias provides free monitoring of HTTP, TCP/IP port, ping, SMTP, POP# FTP, web page defacementsfrom multiple networks around the world.H.323 Beacon is a tool that can be used to measure, qualify and troubleshoot performance of H.323Videoconference sessions both at the network and host levels (end-to-end)MossHe (Monitoring with SSH Environment) is a simple, lightweight (both in size and systemrequirements) server monitoring package designed for secure and in-depth monitoring of a handful oftypical/critical internet systems.Munin monitoring tool surveys all your computers and remembers what it saw. It presents all theinformation in graphs through a web interface. Its emphasis is on plug and play capabilities. Aftercompleting a installation a high number of monitoring plugins will be playing with no more effort.OpenSMART (Open Source|System Monitoring and Reporting Tool) is a tool to monitor applicationswith an agent per host. These agents report all there results to a central monitoring console fordisplaying and alerting. OpenSMART agents can fix some errors (like not running processes) on theirown and OpenSMART knows about conditional monitoring (e.g. in a cluster: An application will bemonitored only, when the file system is available on this cluster node, too).Serio IT Service View is a free monitoring tool for servers and network devices. It includes standardplugins for monitoring Windows Servers, Linux Servers, Exchange servers, 'pingable' devices, log files,Oracle databases, web and web page content monitoring. It can respond to SNMP Traps, and includesits own mib compiler and scripting language for creating your own plugins. WMI integration allowsrebooting of Windows servers, restarting services, etc. Realtime graphs and web page status pagesincluded.SpiceWorks is a browser-based desktop that lets you: inventory hardware, software and patches on yournetwork; monitor your network for new software, low disk space, offline servers and rogue users; reporton the information you need to manage your network.System and Network Monitor (SNM) is a tool to monitor, graph and alert on computing devices andservices. SNM runs on a Windows or Linux device on your network, 24 hours every day. The recordeddata is accessed via a user friendly menu-driven web browser, e-mail alerts are raised if a userdetermined threshold fails. Sysmon is a network monitoring tool designed to provide high performanceand accurate network monitoring of various application protocols. Currently supported protocolsinclude SMTP, IMAP, HTTP, TCP, UDP, NNTP, and PING tests.XYMON (used to be HobbitMon) monitors hosts, network services, and anything else you configure itto do via extensions. Hobbit will periodically generate requests to network services - http, ftp, smtp andso on - and record if the service is responding as expected. Through the use of agents installed on theservers, you can also monitor local disk utilisation, logfiles and processes.

aslookup tool searches the sequence of AS number specified with the parameter from IRR and indicates thefirst line of Description of AS Object.arpwatch, if this link fails then you can FTP it from ftp://ftp.ee.lbl.gov/arpwatch.tar.Z (since this is the master

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

21 of 33 26/10/2012 14:36

Page 22: Network Monitoring Tools

repository it may also be a more recent version than the one above).BGP

Argus monitors the Internet and discovers anomaly BGP updates caused by prefix hacking andadverises via the web site. See also the paper and about argus.BGPlay a web based service, freely available to the community since 2004, which allows graphicalinspection of interdomain routing evolution using public BGP data collected by www.routeviews.organd by www.ris.ripe.net.BGPmon can monitor your prefixes and alert you in case of a 'interesting' path change. Recently this hasreceived quite some attention. Specifically after the Youtube hijack and the demo given at defcon.Cyclops a watchdog for prefix hijack and the Border Gateway Protocol.iBGPlay based on the same visualization technology of BGPlay it is designed to inspect the interdomainrouting evolution using private BGP data collected from ISP's routers. iBGPlay can show the outgoingtraffic paths for all internet destinations and is especially suited for content providers. Subscription toiBGPlay is free.LinkRank BGP dynamics visualization tool "LinkRank" also presented at Nanog 32 at Reston, VA(http://www.nanog.org/mtg-0410/lad.html).

FDBGet This little gadget will try to retrieve the forwarding table entries (Mac to interface number) ofswitches (layer 2 devices). This comes in handy when you want to know to which interface of a switch aparticular NIC (e.g. computer) is attached to. Now suppports parameters for command line use.DigD-ITG (Distributed Internet Traffic Generator) is a platform (collection of tools) capable of producing traffic(network, transport and application layer) and of accurately replicating appropriate stochastic processes forboth IDT (Inter Departure Time) and PS (Packet Size) random variables (exponential, uniform, cauchy,normal, pareto, ...).Dummmynet A FreeBSD system for emulating the effects of bandwidth limitations, propagation delays,bounded-size queues, and packet losses.FingerPrinting

NetworkActive Port Scanner a network scanning tool that can perform UDP and TCP port scans andsubnet scans, whois, DNS-dig, ping, protocol scans, and TCP/IP stack fingerprinting.Nmap is a utility for port scanning of large networks, although it works fine for single hosts.OPENXTRA has a version (NMapWin) for Windows.TBIT TCP Behavior Inference Toolsscan performs probes against victim hosts to identify services which may potentially be vulnerable toexploitation.

Flow MonitoringArgus the network Audit Record Generation and Utilization System. The Argus Open Project is focusedon developing network activity audit strategies that can do real work for the network architect,administrator and network user. It is a Unix based Real Time Flow Monitor designed to track and reporton the status and performance of all network transactions seen in a data network traffic stream.ASDIC is a system for advanced firewall log and traffic analysis in large TCP/IP networks.Cflowd is an experimental tool to collect data from Cisco's netflow export feature.Nett::Flow is a Perl CPAN module to decode and encode NetFlow/IPFIX datagrams.Netflow Monitor is tool with a nice web interface for processing and evaluating NetFlow Exports fromCISCO routers.NFDUMP tools collect and process netflow data on the command line. They are part of the NfSenproject. The goal of the design is to able to analyze netflow data from the past as well as to trackinteresting traffic patterns continuously. The amount of time back in the past is limited only by the diskspace available for all the netflow data. The tools are optimized for speed for efficient filtering. Thefilter rules look familiar to the syntax of tcpdump (pcap like).NfSen A graphical web based front end for the nfdump netflow tools that allows you to: dDisplay yournetflow data: Flows, Packets and Bytes using RRD (Round Robin Database); navigate through thenetflow data; process the netflow data within the specified time span; create history as well ascontinuous profiles; set alerts, based on various conditions; write your own plugins to process netflowdata on a regular interval.Qosmet enables real-time passive QoS monitoring of IP application flows + also QoE evaluation fortrained applications. Qosmet supports Windows, Linux, and Android and runs as a light-weight SW

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

22 of 33 26/10/2012 14:36

Page 23: Network Monitoring Tools

Service, being controllable from third party SW via a special protocol library.FTP is the standard File Transfer Protocol. See also Commercial FTP tools.

Autobuf is an auto tuning-enabled FTP client and server. The client, a modification of the NcFTPClient, enables Auto Tuning to calculate optimal window sizes before files are transferred. The client iscompatible with most other FTP servers. The server, a modification of the WuFtp FTP server, allowsconnecting clients to reset its buffer size dynamically by using a SITE option.bbcp a secure peer to peer file copy program supporting large windows and multiple streams. See alsothe presentation and the PDF paper.bbftp is designed to quickly transfer files across a wide area network. The package comprises of a serverand clients. It also provides compression and secures the transmission of the username and password byusing the cryptolib of the OpenSSL project.BitTorrent an aggressive peer-to-peer file transfer protocol/implementation.Firehose firehose uses multiple interfaces to stripe a bulk data transfer (it's geared towards files, thehome-grown protocol includes sending a filename and the client requires a file) over multiple networkinterfaces.GSIFTP is an ftp client and server with built in kerberos and GSI (globus) security, and also allows youto set the TCP buffers on both the client and server.HPN-SSH provides a patch to remove the performance bottlenecks in OpenSSH.SafeTP operates by installing a transparent proxy in the Windows networking stack which detectsoutgoing FTP connections from any Windows FTP client, and silently secures them using moderncryptographic techniques.NcFTP has a popular free FTP client that adds support for firewalls, intelligent ls caching, backgroundand scheduled processing, and Microsoft Windows.RFT Reliable File Transfer Service is a service that allows byte streams to be transferred in a reliablemanner. Reliability, in this context, means that problems of less than a certain, user defined magnitudeare dealt with automatically. i.e. problems like dropped connections, machine reboots, temporarynetwork outages, etc are dealt with automatically (usually via retry) until they either resume or meetsome "ultimate failure" conditionvsFTP Re-engineered ftpd server with modern security and performance integrated. Accounts easilyisolated using integrated chroot() based configurations, significant reporting facilities, performs wellunder high loads.WU-FTPD is a popular FTP server from Washington University.

Host based network monitoring toolsCollectl is a lightweight tool that can monitor network and other traffic and provide a consistent,integrated view of what the system is doing. It can run as a daemon, maintaining a set of rolling logsand optionally can write them in a format plottable by gnuplot or loadable into Excel.Etherape is a graphical network monitor for Unix modeled after etherman. Featuring link layer, ip andTCP modes, it displays network activity graphically. Hosts and links change in size with traffic. Colorcoded protocols display.Ethergrouik is a free opensource easy-to-use software that enables you to monitor your network activity(like Etherape) for Windows.Fing is a freeware tool for the discovery and scan of local and remote networks. Using adaptingtechniques, it can discover and scan large networks in short times. It runs on Windows, Linux and MacOS X.IPTraf is a console-based network statistics utility for Linux. It gathers a variety of figures such as TCPconnection packet and byte counts, interface statistics and activity indicators, TCP/UDP trafficbreakdowns, and LAN station packet and byte counts.Ntop is a Unix tool that shows the network usage, similar to the popular top Unix command.PacketTrap is a free network monitoring tool suite including; TFTP, ping scan, traceroute, and port scan.Pktstat a real-time list of active connections seen on a network interface, and how much bandwidth isbeing used by what. Partially decodes HTTP and FTP protocols to show what filename is beingtransferred. X11 application names are also shown. Entries hang around on the screen for a few secondsso you can see what just happened. Also accepts filter expressions á la tcpdump.

Internet Detective is a small Windows application that offers computer users easy access to the status andcapabilities of their current network connection by providing information about advanced networkcapabilities, including connectivity to an Internet2 backbone network, an estimate of available bandwidth and

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

23 of 33 26/10/2012 14:36

Page 24: Network Monitoring Tools

multicast capabilities.IP Address Management (IPAM)

NetDB is a Network Tracking Database providing a highly scalable program using SSH/telnet thatkeeps track of all ARP and mac-address tables across your routers and switches, with many features toease network management. You can map devices to your switch ports, locate all ports configured for aVLAN and track all of this information over time.Netdisco is an Open Source web-based network management tool. Designed for moderate to largenetworks, configuration information and connection data for network devices are retrieved by SNMP.With Netdisco you can locate the switch port of an end-user system by IP or MAC address. Data isstored using a SQL database for scalability and speed. It also provide optional use of the CiscoDiscovery Protocol (CDP).

Lachesis a tool from Intel to monitor and report on response time and packet loss to "landmark" Internet sites.Mapping tools

GeoPlot is a light-weight java applet which allows users to create a geographical image of a data set.Mapnet from NLANR/CAIDA is a tool for visualizing the infrastructure of multiple backbone providerssimultaneously (Mapnet), and for updating and correcting information that may be invalid or out of date(Mapnet Update)NetGeo is a database and collection of Perl scripts used to map IP addresses, domain names and ASnumbers to geographical locations.Network Weathermap provides useful tools for reporting/visualisation of a network's flows generally.

Monitoring Infrastructures (also see Comparison of Some Internet Active E2E MeasurementInfrastructures)

Cheops is an Open Source Network User Interface designed to unify your network utilities.EDDIE is a system monitoring, security and performance analysis agent developed entirely in Python.Its key features are portability, powerful configuration and ease of expansion.GNMS is a GPL Network Management System, a graphical tool used to monitor state of networkelements. Montoring can be done in multiple ways using service discovery, snmp, wmi and customplugins, moreover syslog and snmp traps can be caught too.Ganglia is a scalable distributed monitoring system for high-performance computing systems such asclusters and Grids.GNetWatch is a mature free open source Java application that offers real-time graphical monitoring andanalysis of network performance (using traffic generators and SNMP probes). The main advantage ofGNetWatch is that it can monitor events (like throughput) that change for instance every second : theuser can see a dynamic graphical window.GroundWork Monitor Open Source combines open source projects like Nagios, Nmap, Sendpage,MySQL, etc with custom dashboards in one software package for monitoring a range of platforms -Linux, Unix, Windows - & network devices.Hyperic HQ Open Source systems management software designed to monitor, analyze and controlperformance and availability of web infrastructure including hosts, virtualized guests, services,applications and networks through an easy to use portal and extensible plugin architecture.Mon is a general-purpose resource monitoring system, which can be used to monitor network serviceavailability, server problems, environmental conditions such as the temperature in a room, or anynumber of things.Nagios (used to be NetSaint) is an open source host, service and network monitoring program. It isdesigned to run under Linux, although it should work under most other *NIX variants. It can run eitheras a normal process or as a daemon, intermittently running checks on various services that you specify.The actual service checks are performed by external "plugins" which return service information toNagios. Several CGI programs are included with Nagios in order to allow you to view the currentservice status, history, etc. via a web browser.NetMeter This application allows you to seamlessly monitor your online activity in terms of trafficspeed. The main window of the program is minimalistic and contains a graph that shows the on-goingtraffic in your network. The download speed appears in red, while the upload speed appears in green.You can also view the maximum accepted speed.Network Performance Advisor is a single application which integrates the measuring, analyzing, anddisplaying of network performance statistics.Network Status Notifier is a tool for monitoring and logging network status (links,routes, addresses,

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

24 of 33 26/10/2012 14:36

Page 25: Network Monitoring Tools

neighbours...) and executing scripts upon state changes.NIMIOsmius is a system, application and service monitoring tool with availability and SLA tracking.OSSMON is a web-based monitoring package based on OSSWEB application framework. It supportsSNMP monitoring as well as specific services like POP3, SMTP, Ping.Performance Co-Pilot from SGI allows one to measure, visualize, record, and/or respond to the status,activity, and performance of systems, networks, applications, and servers. PCP is open source and runson Windows, Mac OS X, and most Unix/Linux variants.PingER End-to-end active measurement using ping to monitor end-to-end performance of Internet links.Polymon is a free Windows/SQL based network/system monitoring solution that has flexible alertingcapabilities as well as historical analysis of uptime and all counters and monitor statuses for a variety ofmonitors such as ping, snmp, Windows performance monitors, SQL, etc.SCAMPI SCAMPI is a platform for passive monitoring. It can use several different hardwaremonitoring adapters (SCAMPI adapters developed in the project, DAG cards produced by Endace andregular NIC cards). It provides MAPI (Monitoring API) as a high-level abstraction of passivemonitoring for easy creation of portable monitoring applications.Scriptroute is a flexible network measurement and debugging system. Measurements are expressed asscripts that run as an ordinary user, and a priviledged daemon schedules and manages the packetexchange. The goal is to allow any user to connect to any server and execute any safe networkmeasurement.Simple Infrastructure Capacity Monitor (SICMD) is a tool to monitor, graph and alert the capacity ofcomputing devices. SICM runs on a Windows or Linux device on your network, 24 hours every day.The recorded data is accessed via a user friendly menu-driven web browser. E-mail alerts are raised if auser determined number of queries fail.skipole-monitor allows the user to input host IP addresses, it then pings these hosts every five minutesand displays their status via a built-in web server, on port 8000. It can optionally send email alerts if thehosts change status.Total Network Monitor is an application which can be installed on a server and runs 24/7, constantlymonitoring your network computers, servers, ports and services and alerting administrators aboutarising problems by e-mail, jabber, ICQ etc.Zenoss is an integrated, easy-to-use IT infrastructure monitoring software product produced by theOpen Source Community.

mrtg Multi Router Traffic Grapher. Also available from OPENXTRA.mrtg-ping-probe is a ping probe for MRTG. It is used to monitor the round trip time and packet loss tonetworked devices. MRTG uses its output to generate graphs visualizing minimum and maximum round triptimes or packet loss.NetLogger tools to make it easy to instrument distributed applications and visualize the results.Network Security

CERT NetSA Security Suite The Network Situational Awareness (NetSA) group at CERT hasdeveloped and maintains a suite of open source tools for monitoring large-scale networks using flowdata. These tools have grown out of the work of the AirCERT project, the SiLK project and the effort tointegrate this work into a unified, standards-compliant flow collection and analysis platform.

netstat a built in Unix and Windows command line utility to display active network connections.NetStat Live is a small, easy to use TCP/IP protocol monitor which can be used to see your exact throughputon both incoming and outgoing data.NetTest Nettest is a secure, real-time network monitoring utility. The nettest framework is designed toincorporate existing and new network tests, and be run as a daemon or an interactive process. Requests fornetwork tests are received via a SSL connection or the user interface and are authorized using an ACL list (inthe future authorization using Akenti will also be supported).Network Diagnostic Tool (NDT) a web100 Java applet developed to test the reliablity and operational statusof your desktop computer and network connection.NPAD (Network Path and Application Diagnosis) is designed to diagnose network performance problems inyour end-system (the machine your browser is running on) or the network between it and your nearest NPADserver. For each diagnosed problem, the server prescribes corrective actions with instructions suitable fornon-experts.ns network simulator is a discrete event simulator targeted at networking research.

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

25 of 33 26/10/2012 14:36

Page 26: Network Monitoring Tools

NIST Net allows a single Linux PC set up as a router to emulate a wide variety of network conditions.NOCOLnslookupOWAMP One Way Active Measurement Program from Internet 2. provides one way delay measurements.Packet capture/analysis tools. (see also commercial capture tools) Before using these tools on your site youshould check with your network security people.

Analyzer is a fully configurable analyzer program. It was developed in Win32 environment. It can beused with both Windows 95/98 and Windows NT/2000 platforms. It is composed by three parts: agraphical interface, an analysis engine and a capture program.Bro intrusion detection system contains a number of protocol analyzers that can munch on tcpdumptraces (or live traffic, of course) and extract high-level application events from the reassembledTCP/UDP streams.Crypto-PAn is a cyrptography-based sanitization tool for network trace owners to anonymize the IPaddresses in their traces in a prefix-preserving manner.Ethereal/Wireshark is a free network protocol analyzer for Unix and Windows (including Win2K). Itallows you to examine data from live network or from a capture file on disk. Also Packetyzer provides aPacketyzer new Windows User Interface that will available under the terms of the GNU Public License.Also see the CACE Pilot that provides extra facilities to Wireshark.Darkstat a packet sniffer that runs as a background process on a cable/DSL router, gathers all sorts ofstatistics about network usage, and serves them over HTTP.IPAudit captures packets in promiscuous mode and is often used for intrusions detection.Jnettop Jnettop is a traffic visualiser, which captures traffic going through the host it is running from anddisplays streams sorted by bandwidth they use.Justsniffer is a tcp packet sniffer. It captures reassembles and reorders TCP packets, performs IP packetdefragmentation and displays the tcp flow and trace timings. It is useful for logging network traffic in a'standard' (web server like) or in a customized way. It can log http response time, useful for trackingnetwork services performances (e.g. web server, application server, etc.) .Microsoft Network Monitor is a free protocol analyzer for Windows. It lets you capture and view livenetwork data and view traces in .CAP, .PCAP, and .ETL file formats. It is capable of analyzing hundredsof protocols including Windows and SQL protocols as described from MSDN. Parsers are updatedregularly in the open source on CodePlex. There are also a variety of open source analysis add-ons.More information can be found at the tool's blog.NetworkMiner is a passive network sniffer/packet capturing tool for Windows. NetworkMiner candetect OS's, hostnames, open ports, sessions and extract files without putting traffic on the network.NetworkMiner can also parse PCAP files for offline forensic analysisPasTmon is a passive network application response time monitor utilising packet capture (via libpcap),tracking sessions maintaining transaction state and collecting metrics of server/network response times,segment size negotiation and TCP window size advertisements.Plab is a software platform for packet capture and analysis. It is capable to extract, either from livetraffic or from file traces, Inter Packet Times (IPT) and Packet Sizes (PS) inside conversations betweencouples of hosts. Plab runs under Linux and FreeBSD. It tries to use as few processing resources aspossible and it is capable of analyzing traffic traces of hundreds millions packets associated to millionsof conversations.sniffit,Snoop is similar to tcpdump and is bundled with the Sun/Solaris Unix operating system.Snuffle is a measurement tool for capturing the protocol messages, internal protocol states and tomeasure implementation performance on networking nodes. Snuffle consists of a set of modules placedin the kernel, device driver and user space. Currently measuring probes for UDP, IP and IEEE 802.11bMAC are implemented.TansuTCP (TT) is a TCP trace utility which listens on a local port and then forwards tcp packets toanother server. You can see and save binary / text data to a file or you can load binary data from a file.Tcpdpriv is a program for eliminating confidential information from packets collected on a networkinterface (or, from trace files created using the -w argument to tcpdump).tcpdump. There is also a version for Windows. tcpillust takes tcpdump file(s) specified at the commandline and draws pictures like figures in the ``TCP/IP Illustrated'' series. You can see sample screenimages of tcpillust or screen guide at http://www.jp.nishida.org/tcpillust/index.html.

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

26 of 33 26/10/2012 14:36

Page 27: Network Monitoring Tools

TCPurify is a packet sniffer/capture program similar to tcpdump, but with much reduced functionality.What sets TCPurify apart from other, similar programs is its focus on privacy. TCPurify is designedfrom the ground up to protect the privacy of users on the sniffed network as much as possible.TCPshow is a Unix based program that parses the output file of TCPdump into human readable text.Tcptrace is a TCP dump file analysis tool written by Shawn Ostermann at Ohio University.trafd is a traffic accounting daemon for Linux and FreeBSD, built on top of libpcap, with accompanyingtools to manage its data.trafshow continuously displays information regarding packet traffic on the configured network interfacethat match the boolean expression.Tstat TCP statistic and analysis tool (Unix/Linux based) - allows collecting network performanceindexes from passive traffic analysis (i.e. packet traces), at both network (IP) layer, and at transport(TCP/UDP/RTP/RTCP) layer. It can be used to persistently monitor links, thanks to the integration withthe RRD database.WinPcap is an architecture for packet capture and network analysis for the Win32 platforms, based onthe model of BPF and libpcap for UNIX. See also libcap for windows and libpcap for Unix.

Path Characterization & Bandwidth EstimationABwE Available Bandwidth Estimator.Bandwidth Estimation Tools a compendium of tools maintained by Sally Floyd.MTUPath discovers one-way path MTU to a host(IPv4 and IPv6)PathChirpPathload measures the available bandwidth of a link.Pathneck is an active probing tool that can detect bottleneck location of network path. It only needssingle end control, and has relatively small probing overhead (33.6KB for one probing in the defaultsetting).Pathprobe is a MIB tool that uses TCP and web100 to probe and characterize the path between twohosts. The goal of this tool is to run hop-by-hop tests to determine if the paths along the way are capableof supporting the desired end-to-end target bandwidth between the sender and receiver.Pathrate measures end-to-end capacityPchar an independent implementation of Van Jacobsens pathchar with more intelligible output.Available for FreeBSD, Solaris, Linux, IRIXPipechar a tool for reporting dynamic network characteristics in particular the bottleneck bandwidth. Itis now part on the Network Characterization Service (NCS).STAB short for spatio-temporal available bandwidth estimator, locate congested links on an end-to-endnetwork path.

Pingarping is an ARP level ping utility. It's good for finding out if an IP is taken before you have routing tothat subnet. It can also ping MAC addresses directly. It is pre-installed on some Linux installations, butrequires sudo priviledges.fping is similar to ping but is optimized to ping a large number of hosts in parallel.Fpinger Visualizes your computer network as an animated screen that lets you perform administrationfunctions, monitoring, pinging, scanning, exporting, looking for software and hardware over thenetwork.FREEping will ping all your 2003-XP-2000-NT servers (or any other IP address) in free-definableintervals. FREEping will send you a popup when one of the 2003-XP-2000-NT servers stopsrespondingJust-ping pings from 8 locations worldwide to a host you select.MTR (Matt's traceroute) combines the functionality of the 'traceroute' and 'ping' programs in a singlenetwork diagnostic tool.MultiPing Grapher MultiPing Grapher is a further development of Perfping with the ability to graph upto 10 different ICMP results. Includes logging and average calculation.pathping is built into Windows 2000, it pings all nodes along a route.Perfping a tool for testing availability, response times and performance using ICMP. Writes data to atext file for later interpretation with e.g. Excel. Allows you to change IP address, ICMP timeout anddata size during runtime. Comes with a nice little graph for realtime testing.Pingroute.pl is a simple Perl script to ping all nodes along a traceroute and provide min, max, avgresponse time, plus packet loss analysis for 100 and 1400 byte packets. The source is freely available

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

27 of 33 26/10/2012 14:36

Page 28: Network Monitoring Tools

for SunOS, Solaris, Linux, AIX and Digital OSF1.Pingsweep Widnows tool to enabls sweeping a subnet range by pinging each host address in the rangeTCP based pings use TCP to figure out the Round Trip Time (RTT)

hping2 hping is a command-line oriented TCP/IP packet assembler/analyzer. The interface isinspired to the ping(8) unix command, but hping isn't only able to send ICMP echo requests. Itsupports TCP, UDP, ICMP and RAW-IP protocols, has a traceroute mode, the ability to send filesbetween a covered channel, and many other features.Tping also can ping more than one host at a time.

TRIUMF's Visual Ping provides a Web page that the user can make ping transfer rate measurementsbetween the Web server and the browser.hping2 is a network tool able to send custom ICMP/UDP/TCP packets and to display target replies likeping do with ICMP replies.Zinger a small Perl program that pings the closest router on network and reports any loss of connection.When it detects a problem, it does two things. First, it announces the problem over the PC speakers.Then, it writes the time and date to a log file. When the connection comes back up, the program writesanother entry in the log and announces the happy event over the speakers again.

Qcheck checks network response time, throughput, and streaming performance, by means of thin agentsinstalled on hosts that are to be checked.RANCID monitors a router's (or device's) configuration, including software and hardware (cards, serialnumbers, etc), using CVS. Rancid logs into each of the devices in a router table file, runs various commands,chomps the output, and emails any differences ( sample) from the previous collection to a mail list.Rider measures available bandwidth, latency, and streaming performance (including noticing consecutive lostpackets -- a key measure for VoIP) using lightweight performance agents that include a built-in web server.Using a web browser for a GUI provides many extra useful features, such as the ability to save and printresults, and the ability to bookmark tests (and even make a page of tests for your intranet.)RRDtool (Round Robin Database tool) is a system to store and display time-series data.

Cacti is a complete network graphing solution designed to harness the power of RRDTool's data storageand graphing functionality.Cricket is a high performance, flexible system for monitoring trends in time-series data. The collectorruns from cron every 5 minutes (by default), and stores data into a file-based database managed by theRRD Tool. Later, when you want to check on the data you have collected, you can use a web-basedinterface to view graphs of the data.ElvinRRD is a tool to provide a mechanism for transporting data across a network and storing it in RRDdatabases. ElvinRRD is written entirely in Python and works with (and requires) both Elvin andRRDtool. Any Elvin producer (client) can send data for ElvinRRD to store (e.g., EDDIE-Tool); and anyRRD-aware software can process the resulting RRD databases (e.g., Cricket, Cacti).Host Grapher II is a light program that uses RRD to draw graphics of Hosts for Network, Processes,CPU, Memory etc. Writing addicional plugins is quite simple. Works on all major UNIX platforms andon win32.NetMRG is a tool for network monitoring, reporting, and graphing. Based on RRDTOOL, NetMRG iscapable of creating graphs of any parameter of your network.NMIS Network Management Information System is an SNMP polling and statistics viewer front-end toTobi Oetiker's RRDTool.Orca is a tool useful for plotting arbitrary data from text files onto a directory on a Web server.remstats Remstats is a system of programs to: gather data from servers and routers, store and maintainthe data for long periods, produce graphs and web-pages tieing them together, and monitor the data foranomalous behavious and issue alerts. This software is a pretty good hack to wrap around rrdtool ascollector and presenter, easy to set up with not to much prerequesits. It only needs a some perlmodulesand perl. Its under GPL and is able to maintain and monitor big environments.SmokePing measures latency and packet loss in your network. Uses RRDtool to maintain a longtermdatastore and to draw pretty graphs giving up to the minute information on the state of each networkconnection.Torrus is designed to be the universal data series processing framework. Its has a scalable hierarchicaldesign, with an application-independent core, and highly customizable architecture. Suitable for smallinstallations and for big enterprise or carrier networks. Although most of our users deploy Torrus forSNMP monitoring, it might be useful for data series of any nature. Tobi Oetiker's RRDtool is used for

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

28 of 33 26/10/2012 14:36

Page 29: Network Monitoring Tools

data storage.RouteViews is a tool for Internet operators to obtain real-time information about the global routing systemfrom the perspectives of several different backbones and locations around the Internet.SNMP:

Analyse It is a shareware device poller that produces graphical performance reports for devices. You useit for trend analysis. The reports are in HTTP format for global organization view ability. Enables proactive network availability, performance, reliability and utilization reporting.CMU SNMPEzMgt MIB Browser is a free tool that includes a MIB Editor, SNMP Query View and SNMP TracerView.Interface Traffic Indicator Interface Traffic Indicator, a graph utility to measure incoming and outgoingtraffic on an interface in bits/sec, bytes/sec or utilization. Works on all SNMP-capable devices(computers, NICs, switches, routers, etc.) with adjustable poll interval down to three seconds. You canuse this program in a professional network environment to monitor selected network interfaces (evenbackplane ports if the device provides the information) or you can monitor your home network orcable/modem/ISDN connection to the internet.Mibbrowser Mibbrowser is a tool that retrieves all MIB data (OIDs and values) from SNMP-capablenetwork devices. It can be used to find out what kind of MIB data is available from a device.STC is a free command line tool to get and compare, side by side, SNMP tables entries from differentcomputers. The output is always in XML format which is by default associated with a XSL script. So itcan be processed later or immediately viewed with a WEB browser.Tricklet man pagesUCD SNMP public domain tools

SolarWinds Free Tools provides many free tools for everydays tasks performed by network professionals.Includes uploading/downloading executabe images to network devices, IP address tracking, syslog server,monitoring of some applications, netflow etc.Spong Son of Pong (spong) is a simple system monitoring package, that will monitor system attributes andnetwork services on a variety of machines. It will gather status reports and contact staff if there are problems.It will also summarize the information and display it via a web interfaceTCPtune a TCP stack tuner for WindowstelnetThruput tools (also see the FTP tools):

BWCTL is a command line client application and a scheduling and policy daemon that wraps thethroughput testing tools Iperf, Thrulay, and Nuttcp. These tests can measure maximum TCP bandwidth,with various tuning options available, or, by doing a UDP test, the delay, jitter, and datagram loss of anetworkbulk is achievable performance measurement tool (iperf-like), which allows real-time monitoring of anysocket options and their members, particularly TCP_INFO option, which provides useful clues forperformance debugging. You can monitor rtt, cwnd, ssthresh, retransmits, etc. down to per sent segment,if you wish. The tool does not require root access or any kernel patch (even though it works with anaccompanying AIMD patch for per-socket AIMD tuning).gen_send/gen_recv a simple UDP trafic generator.IPerf is a tool for measuring maximum TCP and UDP bandwidth, reminiscent of tools such as ttcp. Ithas been written to overcome the shortcomings of those aging tools. Jperf is a Java implementation.netperf maintained by HP, is a general measure of performance of a network. Provides a measure oflatency between request and response of generic transactions across a TCP/IP network.Nuttcp is a tool for measuring TCP achievable throughput.RUDE stands for Real-time UDP Data Emitter and CRUDE for Collector for RUDE. RUDE is a smalland flexible program that generates traffic to the network, which can be received and logged on theother side of the network with the CRUDE.Tcpspray sends data to either the discard or echo TCP service on the specified host and prints theaverage throughput.thrulay measures achievable UDP and TCP single stream throughputs (currently only supports Linux)also provides RTT estimates.TReno a tool to function as a basis for a formal bulk transfer metric for the Internet.ttcp

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

29 of 33 26/10/2012 14:36

Page 30: Network Monitoring Tools

Traceroute (also see the Traceroute Servers web site, and commercial traceroute products)man pages, where to get it, and traceroute servers.Gtrace is a traceroute visualization tool that uses a combination of methods to either determine or guessat the physical location of a node in the traceroute path. It is flexible enough to support addition of newdatabases, heuristics to map IP addresses to physical location and maps.mturoute is a small Windows tool to determine the path MTU between you and a specified host. Intraceroute mode it will additionally show you the mtu at every hop between you and the specified host.NeoTrace provides graphical traceroute information.pathping a Windows NT utility to do a traceroute and then measure to each node along the route.Prtraceroute is a version of traceroute, from the RIPE Internet Routing Registry toolset, that presentsrouting policy information together with the real time packet trace obtained from traceroute. It adds ASinformation to the normal traceroute output, making use of Routing Registry (RR) database information.Scamper is a program that conducts traceroute to large numbers of IPv4 and IPv6 addresses in parallelto fill a specified packets-per-second rate.TCPtraceroute uses TCP to a port at the end node to do a traceroute.The tracepath for Linux is like traceroute but does not need superuser and has no fancy options. It doesdiscover the PMTU along the route.Traceroute-nanog has additional features like AS lookup, TOS support, microsecond timestamps, pathMTU discovery, parallel probing and others.VisualRoute a GUI based traceroute for Windows.

Zabbix is software for application and network monitoring. Zabbix supports both polling and trappingtechniques to collect data from monitored hosts. Flexible notification mechanism allows easy and qucklyconfigure email notifications for pre-defined events.

Web Tools [Contents]

BenchmarkingWAPT (Web Site APplication Testing) is a web load and stress testing tool that provides a way oftesting web sites, web servers, and intranet applications with web interfaces.WCAT is a Web Capacity Analysis Tool freely available from Microsoft.WebStone from MindCraft measures raw throughput of a standard HTTP workload.Web Server Stress Tool is a powerful HTTP client/server test application, designed to pinpoint criticalperformance issues in your web site or web server that may prevent optimal experience for your site'svisitors. Supports SSL.WWW performance monitoring

Website MonitoringBasicState is a free hosted service for monitoring the status of http servers. Subscribers can also addpopular ecommerce partner sites to their alert specifications.EZ WebSite Monitoring monitors uptime, response time/quality, history, popularity ranking, andtracking important changes.DownorNot shows actual and past information about the uptime of (mainly) popular websiteshostUcan Free monitoring of uptime and performance of a web site from multiple geographic locations.is a web based tool for monitoring web sites and sending alerts on performance or downtime failures.Panopta is a server monitoring service and outage management system for online businesses and serviceproviders, providing the ability to detect outages immediately, then notify the right people about theoutage, and finally, give a team the right tools to resolve the outage quickly.Pingdom lets you monitor the uptime and response time of your web site or servers from severallocations around the world. See your historical performance and make sure that you have a acceptableavailability so you are not loosing customers and visitors. You can also receive SMS and emailnotifications if any downtime occurs so you can fix any errors the minute they happen.RedAlert is a Web site monitoring service that can perform end-to-end checks of your a site every 5 or15 minutes. It can also monitor DNS, email, news & telnet servers.SITEImpulse Website Monitoring providing 1 minute availability monitoring. It has 3 monitoringstations on different continents. Email, SMS and RSS alerts.StressWalk is a pre-production infrastructure testing service powered by Absolute Performance'sSystem Shepherd(r) WebWalk(tm). It uses an automated high load of simulations of your end-users'

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

30 of 33 26/10/2012 14:36

Page 31: Network Monitoring Tools

website behavior.WebMetrics Globalwatch provides performance monitoring and metrics for a broad range of websites,internet applications and services. It provides the information for customer-centric decision-making forthose providing web-enabled services.WebPerform provides website performance monitoring and testing services from network locations inmajor cities across the globe. Drill-down object, host, and component level detail on test runs, reporting,and alerting help companies identify and resolve availability issues and performance problems.Website Monitoring is a free website monitoring application released under the GPL that provides anuptime monitoring tool.WebWalk is a proven dynamic feature that uses synthetic transactions to measure applicationperformance from the end-user perspective.WebWatchBot provides monitoring, notification, and analysis software for web sites and IP devices,providing email alerts, reporting and performance metrics.

Webalizer is a fast, free web server log file analysis program. It produces highly detailed, easily configurableusage reports in HTML format, for viewing with a standard web browser.

Auxiliary Tools to Enable Monitoring, Analysis, Report Creation or Simulation [Contents]

AlarmTILT allows notifification, warning andinforming distributed groups of people. Telecomoperator independent, AlarmTILT relies on multi-channel communication to dispatch two-way emails,two-way SMS text messages and two-way voicetext-to-speech calls to PCs, mobile phones, landlines,PDA/Smartphones, Blackberries, Iphones and more.AlarmTILT provides special plugins for integrationwith Nagios and WhatsUp NMS systems and genericplugins for any other NMS able to generate an emailalert or dump an alert to a file.ghostscriptGIF Manipulation and Animation

Alchemy Mindwork's GIF Construction Set is ashareware tool for Windows.GIFBuilder is freeware for the Mac.WhirlGIF is a UNIX command-line utility totake a series of GIF files and output ananimated GIF.

Mapping toolsGeneric mapping Tools is an open sourcecollection of ~60 tools for manipulatinggeographic and Cartesian data sets (includingfiltering, trend fitting, gridding, projecting, etc.)and producing Encapsulated PostScript File(EPS) illustrations ranging from simple x-yplots via contour maps to artificiallyilluminated surfaces and 3-D perspective views.GMT supports ~30 map projections andtransformations and comes with support datasuch as GSHHS coastlines, rivers, and politicalboundaries. GMT is developed and maintainedby Paul Wessel and Walter H. F. Smith withhelp from a global set of volunteers, and issupported by the National Science Foundation.It is released under the GNU General PublicLicense.

Plotting toolsChartDirector a chart component controllibrary for ASP/COM/VB/.NET/PHP/Perl/Python/Ruby/ColFusion/C++GDChart Easy to use C, Perl, PythonAPIs, high performance library to createcharts and graphs in PNG, GIF andWBMP formatGnuplot a command-line driven interfacefunction plotting utility.Google Charts.Ploticus non-interactive plotting packagefor Unix & Windows. Has mouseoverand mouse click capabilities.Simile.

Analysis & Visualization toolsAnalyse-it is a software add-in forMicrosoft Excel that includes over 30parametric & non-parametric statistics,including descriptive statistics,box-whisker plots, correlation, multiplelinear regression analysis, ANOVA, &chi-square statistics for general statisticalresearch.Maple.MatLab.moodss a graphical monitoringapplication. The core takes care ofmanaging modules (loading andunloading), displaying modules datathrough sortable tables and diversegraphical viewers, handling user setthreshold conditions with email alerts,recording and browsing data history froma database. moodss can predict the future,using sophisticated statistical methodsand artificial neural networks, and

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

31 of 33 26/10/2012 14:36

Page 32: Network Monitoring Tools

Alerting ToolsPagerDuty PagerDuty collects alerts fromserver monitoring tools, provides an overallview of all monitoring alarms, and alerts anon-duty engineer if there's a problem withcomprehensive calendaring, escalation andalerting all in one.

therefore be used for capacity planning.PV-Wave.SAS.S-Plus.

Simulation/ModelingNetwork Simulator (ns).OPNET Modeler OPNET Modeler usesdiscrete event simulation to provide anenvironment for designing protocols andtechnologies, as well as testing anddemonstrating designs in realisticscenarios.Xplot.

Further Information [Contents]

7-Minute IT Manager's Guide to Network Visibility series of podcasts from VSS Monitoring covers trafficvisibility's role in network monitoring. Each segment tackles a different application area or technical topic,e.g., video monitoring, cell network visibility, traffic load balancing to the monitoring devices, configuringtraffic capture filters, intrusion detection and prevention, etc.CAIDA Masurement Tool Taxonomy provides a preliminary overview of Internet and TCP/IP performancemeasurement tools and efforts and distinguishes tools used to measure the Internet from general TCP/IPperformance tools.Gigamon University provides podcasts of passive monitoring for protocol analysis, RMON probe, networktroubleshooting, application performance, web experience management, network and application discovery,network security, intrusion detection, access control, Sarbanes-Oxley, HIPAA and PCI compliance auditing,forensics and packet capturing and storage, deep packet inspection, VoIP analysis and IPTV service assurance,etc.Monitgoring Forge network management solutions.NetworkBones a Search Tool for Computer Network Software.Network Monitoring Tools an introduction to network monitoring.Network Monitor Software a collection of tools and software for network monitoring, reporting,troubleshooting and management.Network Performance Measurement Tools: An Internet2 CookbookComputing Vendors Online.LBNL's Network Research Group Includes links to lots of their documents and tools.Internet Toolsis a compact, comprehensive, carefully organized set of links to essential Internet sites about Internet-basedtools for information, interaction, and communication.LoveMyTool gives customer testimonials and expert reviews of their favoriate "out-of-band" networkksecurity and performance monitoring tools.Malware Analysis: Tools of the TradeNetspec a Network Performance Evaluation and Experimentation Tool from the University of Kansas.Network-Automation mailing list is for discussions of issues related to automating network configuration andmanagement, including (but not limited to) methods, mechanisms, techniques, philosophies, policies, andproducts (in general; questions about specific products should be directed to the mailing list dedicated to thatparticular product).Network Management Tutorial NetworkManagementSoftwrae has some thorough overviews and config tipsfor the latest releases of a lot of the monitoring tools on the SLAC list.Network Performance Daily is blog that includes free network monitoring Tools, How-Tos, and a handyGoogle calendar of events that typically spike enterprise network traffic.NLANR Advanced Applications Database is an online resource that provides access to information aboutnetworked research and education projects, applications, and resources that are related. You can viewinformation about the more than 2,400 projects entered in the AAD by using keyword searches orpreformatted reports.

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

32 of 33 26/10/2012 14:36

Page 33: Network Monitoring Tools

Routing Arbiter ToolSetServerFiles.com is a software directory for network administrators and IT professionals that are looking fornetworking & server software for Windows 2003, Windows 2000 or Windows NT.Terena Guide to network resource Tools a guide to network tools and innovation for users of all levels ofexpertise.TruePath will work with your teams to define what monitoring software packages (if any) are needed. Theythen configure and maintain the monitoring tools and your teams use them.Tutorial on Internet Monitoring & PingER.WebAttack a large collection of Internet Tools.WindowsNetworking.com provides tutorials on various Windows networking related topics such as setting upWindows NT/XP/2000/2003 networks, troubleshooting, connectivity and more. Also includes acomprehensive archive of reviewed networking software.The X Consortium's Anonymous FTP Archive.Smart Yellow Pages

[Contents]* Disclaimer: Reference herein to any specific commercial products, process, or service by trade name, trademark,manufacturer, or otherwise, does not necessarily constitute or imply its endorsement, recommendation, or favoringby SLAC, Stanford University or the United States Government. The views and opinions of authors expressedherein do not necessarily state or reflect those of SLAC, Stanford University or the United States Government, andshall not be used for advertising or product endorsement purposes.

[ Feedback ]

Network Monitoring Tools http://www.slac.stanford.edu/xorg/nmtf/nmtf-tools.html

33 of 33 26/10/2012 14:36