Now Reading
PcapDB Overview

PcapDB Overview

by Igor Mikhaylov2017-07-23

PcapDB is a packet capture system designed to optimize the captured data for fast search in the typical (network incident response) use case. A PcapDB installation consists of a Search Head and one or more Capture Nodes. The Search Head can also be a Capture Node, or it can be a VM somewhere else. The first requirement is that PcapDB is designed to work only on Linux servers. PcapDB uses quite a few off-the-shelf open source systems, and it’s useful to understand how those pieces fit into the larger system.


You can read detailed description about requirements, installation and settings in a post . In addition to the detailed description, you can learn about the various subsystems.

Leave a Response

Please enter the result of the calculation above.