All releases of flowprobe


Release Notes: A vulnerability to a DoS attack, as described in "Denial of Service via Algorithmic Complexity Attacks" by Scott A Crosby and Dan S Wallach (http://www.cs.rice.edu/~scrosby/hash), was fixed by strengthening the crc16 hash function implementation. Note that xor8 and xor16 hashes remain vulnerable. The default hash was changed to crc16. The -B option was added. With regard to the libipulog-based version, if_nametoindex() is used as the default action to find SNMP-index. The -M option was added.


Release Notes: This release features a security fix for the "change user" feature, and a fix for a typo in the CAPTURE_SIZE definition.


Release Notes: This version includes a security fix for the "change user" feature.


No changes have been submitted for this release.


Release Notes: Chroot and change user abilities were added. A compilation problem on BSDI 4.0 was fixed.


Release Notes: A trailer bug for hardware with a limitation on the minimal size of a frame was fixed. A minor bug in the "uptime trick" mechanism was fixed. The ability to process files produced by tcpdump was added. fprobe now creates PID files. TCP flags support was extended for CWR and ECE flags.


Release Notes: Multiple collectors support and Cisco's ICMP type/code storing method were added.


Release Notes: NetFlow v1 and v7 support was fixed, the behavior of the -x option was changed, and the man page was updated.


Release Notes: A command line parser bug was fixed.


Release Notes: Take special note that the behavior of the -f option was changed. There is no default filter any more. The -K option was added. Manpage updates were made.