SiLK Release 3.17.2, 2018-Jun-28

Downloads

(SHA256=70b74eceafce7b724ceccd9e801909f4bd28985406eb8c42a94c8d25e7d58194)

Notes

  • Allow the user additional control over how rwgeoip2ccmap converts GeoIP2 country code data to a prefix map file.
  • Add the capability for rwflowpack to treat the NetFlow v9 elements OUT_BYTES and OUT_PKTS as reverse-volume elements.
Full Release Notes

SiLK Release 3.17.1, 2018-Apr-23

Downloads

(SHA256=1580dfabc3ff8cb90b0f303d5758d8be4515f130931601c49c05895f0bd1e1a1)

Notes

  • Fix a compilation failure on RedHat EL6, CentOS 6, and other systems.
Full Release Notes

SiLK Release 3.17.0, 2018-Apr-19

Downloads

(SHA256=11a20dafdff67b6c412d988d567946c047a3a301fa922a37dc6bfaa00751de37)

Notes

  • Add support in rwaggbagtool for removing rows when a value is above or below a threashold or when an IP address is in or is not in an IPset.
  • Change how rwsetcat displays IPv4 addresses in an IPset containing both IPv4 and IPv6 addresses.
  • Add support for millisecond timestamps in rwuniq and rwstats.
  • Add support for the GeoIP2 version of MaxMind's country code comma-separated value files and binary files. (Binary file support requires libmaxminddb library support.)
Full Release Notes

SiLK Release 3.16.1, 2018-Feb-15

Downloads

(SHA256=a45f2842821c565d984f20b68afdbf7f05e81c0fe65c2816e3286efce0d6078b)

Notes

  • Fix bugs in rwstats, rwuniq, rwbagcat, rwsender, rwreceiver, rwflowpack, and flowcap.
Full Release Notes

SiLK Release 3.16.0, 2017-Jun-29

Downloads

(SHA256=152054cc717eea23543fb6c8b18270fb040c7b0df87a802038f6f1d4b37ece5d)

Notes

  • In rwstats, compute percentage columns when primary value is a distinct count.
  • Change how the flowrate plug-in handles flows that have a duration of zero.
  • Make additional changes and bug fixes.
Full Release Notes

SiLK Release 4.0.0_beta4, 2017-Jun-29

Downloads

(SHA256=29cc7d73389b4c58532e6924e075099f63ac801de28581af3bf5151d6bb67933)

Notes

  • SiLK 4.x is beta software.
    • The applications have been lightly tested. Some applications may change in incompatible ways in future releases.
    • The analysis tools in SiLK 4.x are largely compatible with those in SiLK 3.x, though SiLK 4.x removes command line switches that were marked as deprecated in SiLK 3.x.
    • The configuration of rwflowpack has radically changed from SiLK 3.x. The flowcap and rwflowappend tools no longer exist.
    • Replacing a SiLK 3.x installation with SiLK 4.x is not recommended without substantial testing first.
  • SiLK Flow files support Sidecar data
    • Allow SiLK Flow files to augment the traditional SiLK Flow record with "sidecar" data. Sidecar data is represented as a Lua table of key-value pairs.
  • Many additional changes.
Full Release Notes

SiLK Release 3.15.0, 2017-Mar-24

Downloads

(SHA256=52b80359f5b7e2e16b9b626f76caf2c993d38f8ce64b1ee648a3767ce5b48f04)

Notes

  • Add Aggregate Bag tools that are similar to the traditional SiLK Bag tools but support multiple fields in the key and counter.
  • Add a new plug-in to compute a hash value using the same algorithm as YAF's getFlowKeyHash utility.
  • Add --output-path and --xargs switches to some tools.
  • Remove support for fixbuf releases prior to libfixbuf-1.7.0.
  • Make additional changes and bug fixes.
Full Release Notes

SiLK Release 3.14.0, 2016-Nov-17

Downloads

(SHA256=a871fa74de79e79c4d81220edf225ae4e2c596a9f500a572e228156976ac7e6e)

Notes

  • Add new IPset file format for IPv6 flow records.
  • Allow the installer of SiLK to choose the default IPset file format written by SiLK.
  • Allow rwsetcat to count the IPs in an IPset stream without loading the IPset into memory.
  • Add a work-around for NetFlow v9 records from a SonicWall device.
Full Release Notes

SiLK Release 2.5.0, 2012-Jun-28

Downloads

(SHA256=e53bb0ac624e19dcad3f0dc0d1847c58809fbaf284ac46935b1da9d6ad454141)

Notes

  • Provide a new configure switch to work-around issues when reading NetFlow v9 flow records from a Cisco ASA router.
Full Release Notes