SiLK Release 3.17.0, 2018-Apr-19

Downloads

(MD5=ae67b3a5a444ba54a7d68c960591d29b)

(SHA1=73bccfe774892d204c82c9ebfc22292fb6394737)

(SHA256=11a20dafdff67b6c412d988d567946c047a3a301fa922a37dc6bfaa00751de37)

(RIPEMD160=828f348c0942a3cf9cfd6a06271d9d3d4996ba4e)

Notes

  • Add support in rwaggbagtool for removing rows when a value is above or below a threashold or when an IP address is in or is not in an IPset.
  • Change how rwsetcat displays IPv4 addresses in an IPset containing both IPv4 and IPv6 addresses.
  • Add support for millisecond timestamps in rwuniq and rwstats.
  • Add support for the GeoIP2 version of MaxMind's country code comma-separated value files and binary files. (Binary file support requires libmaxminddb library support.)
Full Release Notes

SiLK Release 3.16.1, 2018-Feb-15

Downloads

(MD5=8fe50912b9debabc6b2dd390df785d6f)

(SHA1=4a20442efbdb787430eba4b044054d7fd6b712a6)

(SHA256=a45f2842821c565d984f20b68afdbf7f05e81c0fe65c2816e3286efce0d6078b)

(RIPEMD160=73fda5587de1f7df256a1113e618a0a7c9cc7979)

Notes

  • Fix bugs in rwstats, rwuniq, rwbagcat, rwsender, rwreceiver, rwflowpack, and flowcap.
Full Release Notes

SiLK Release 3.16.0, 2017-Jun-29

Downloads

(MD5=0f120cc0969ef021986abb77c12dbdd9)

(SHA1=a2b8dce8ab83f8098ff21fdf441624d10bf21227)

(SHA256=152054cc717eea23543fb6c8b18270fb040c7b0df87a802038f6f1d4b37ece5d)

(RIPEMD160=f5a94778c82e24e65bbedda3ec519b1247882006)

Notes

  • In rwstats, compute percentage columns when primary value is a distinct count.
  • Change how the flowrate plug-in handles flows that have a duration of zero.
  • Make additional changes and bug fixes.
Full Release Notes

SiLK Release 4.0.0_beta4, 2017-Jun-29

Downloads

(MD5=b38d0bcafce057cf29d917d104501ba3)

(SHA1=b5d3f1dba6e615bf46bff1e959e95dcd812719c3)

(SHA256=29cc7d73389b4c58532e6924e075099f63ac801de28581af3bf5151d6bb67933)

(RIPEMD160=c51ac1a380b121e34357ccd25ae726f05408eb65)

Notes

  • SiLK 4.x is beta software.
    • The applications have been lightly tested. Some applications may change in incompatible ways in future releases.
    • The analysis tools in SiLK 4.x are largely compatible with those in SiLK 3.x, though SiLK 4.x removes command line switches that were marked as deprecated in SiLK 3.x.
    • The configuration of rwflowpack has radically changed from SiLK 3.x. The flowcap and rwflowappend tools no longer exist.
    • Replacing a SiLK 3.x installation with SiLK 4.x is not recommended without substantial testing first.
  • SiLK Flow files support Sidecar data
    • Allow SiLK Flow files to augment the traditional SiLK Flow record with "sidecar" data. Sidecar data is represented as a Lua table of key-value pairs.
  • Many additional changes.
Full Release Notes

SiLK Release 3.15.0, 2017-Mar-24

Downloads

(MD5=b58073f6f6de6405e3bce1da3a606908)

(SHA1=665363dbe98dccc86d424f08fdd23df253a66c81)

(SHA256=52b80359f5b7e2e16b9b626f76caf2c993d38f8ce64b1ee648a3767ce5b48f04)

(RIPEMD160=240877efb8bdea1021dffbeb5fe4a8bf92c3e376)

Notes

  • Add Aggregate Bag tools that are similar to the traditional SiLK Bag tools but support multiple fields in the key and counter.
  • Add a new plug-in to compute a hash value using the same algorithm as YAF's getFlowKeyHash utility.
  • Add --output-path and --xargs switches to some tools.
  • Remove support for fixbuf releases prior to libfixbuf-1.7.0.
  • Make additional changes and bug fixes.
Full Release Notes

SiLK Release 3.14.0, 2016-Nov-17

Downloads

(MD5=76e61516e6b365b174a480583b3b8c68)

(SHA1=fd37ccac9dbdd7b5cfcc21c8998807c6a7dc21d7)

(SHA256=a871fa74de79e79c4d81220edf225ae4e2c596a9f500a572e228156976ac7e6e)

(RIPEMD160=e809e094d4e0d5b37845eafb388f02e5b3ccad83)

Notes

  • Add new IPset file format for IPv6 flow records.
  • Allow the installer of SiLK to choose the default IPset file format written by SiLK.
  • Allow rwsetcat to count the IPs in an IPset stream without loading the IPset into memory.
  • Add a work-around for NetFlow v9 records from a SonicWall device.
Full Release Notes

SiLK Release 2.5.0, 2012-Jun-28

Downloads

(MD5=abd24b6164759171c95a2ffcf467a503)

(SHA1=7ce02198742da6475c47b017bfd43c438429ff58)

(SHA256=e53bb0ac624e19dcad3f0dc0d1847c58809fbaf284ac46935b1da9d6ad454141)

(RIPEMD160=d05aa75cac0aa1f66ce2ce40bd8e64f928978aac)

Notes

  • Provide a new configure switch to work-around issues when reading NetFlow v9 flow records from a Cisco ASA router.
Full Release Notes