Hi,
Я тут или на rirt@ когда-то обещал scanlogd'а под libpcap. Так вот,
[...]
This release of scanlogd can be built with support for one of several
packet capture interfaces. In addition to the raw socket interface on
Linux, scanlogd is now aware of libnids and libpcap.
The use of libpcap alone is discouraged. If you're on a system other
than Linux and/or want to monitor the traffic of an entire network at
once, you should be using libnids in order to handle fragmented IP
packets.
Both libnids and direct libpcap support of scanlogd v2.0 have been
successfully tested on the following platforms:
* Linux 2.0, x86, libc 5 (*)
* Linux 2.2, alpha, glibc 2.0
* FreeBSD 3.3-RELEASE, x86
* OpenBSD 2.6, x86
* HP-UX 10.20 (**)
(*) libnids v1.13 required minor hacks to compile with libc 5
(**) libnet v1.00 required minor hacks and GNU make to compile
[...]
И раздается оно, как обычно, здесь:
http://www.openwall.com/scanlogd/
Signed,
Solar Designer
=============================================================================
"inet-admins" Internet access mailing list. Maintained by East Connection ISP.
Mail "unsubscribe inet-admins" to Majordomo@info.east.ru if you want to quit.
Archive is accessible on http://info.east.ru/rus/inetadm.html