Part1 – Monitoring Network Traffic with ntopng and nProbe
Ntopng is the next generation version of the original ntop, a network traffic probe that monitors network usage. It provides a intuitive, encrypted web user interface for the exploration of realtime and historical traffic information. ntopng comes in three versions, Community, Professional (Small Business Edition) and Enterprise. The Community version is free to use and opensource. A physical NIC card of the server can be monitored by by specifying its interface name as
./ntopng -i eth0
However, we will use ntopng in flow collection mode along with nProbe which can act as probe/proxy. The communication between nProbe and ntopng takes place over ZeroMQ, a publish-subscribe protocol that allows ntopng to communicate with nProbe.
ntpong community version is installed on Ubuntu Server 18.04.1 with IP address 172.17.100.7/16. Ubuntu is running inside VirtualBox VM. The IP address of the host (Asus k55vm) is 172.17.100.2/16. The host is connected to the SOHO router that functions as gateway to the Internet gateway with the IP address 172.17.100.1/16. The network diagram is shown on the Picture 1.
nProbe is installed on Raspberry Pi 3B with the IP address 172.17.100.50/16. Windows 7 Continue reading


Within a span of 24 hours, Ericsson and Nokia both claimed to have 16 commercial 5G deals with...


SDxCentral Weekly Wrap for March 29, 2019: Oracle jobs cuts are tied to the cloud; VeloCloud's...
U.K. authorities have “limited confidence in Huawei’s ability to understand the content of any...
As SD-WAN matures it will need to meet the requirements of the changing enterprise, which include...
If compromised, the flaw could allow an attacker to write files to any path on the user’s machine.
It connects Azure cloud security, visibility, and analysis tools with the company’s Azure IoT Hub...