phaag/nfdump ? reverse-engineered prompt

Reverse engineered prompt

Build me a command line toolkit for collecting and analyzing network flow data from routers and packet captures.

I want it to accept NetFlow, IPFIX, and sFlow, store the data efficiently, and let me read it back later with a powerful filter syntax like tcpdump. It should support live collection, replaying PCAP traffic into flow records, sorting and aggregating results, and exporting to text, CSV, and JSON. If possible, include enrichment like geolocation, autonomous system info, and Tor exit node lookup.

I’d like the main collector and analysis tools included, plus a way to turn on extras like PCAP input and any fingerprinting or NAT support if available. Make it fast, reliable, and friendly to run from the terminal, with clear help output and man page style usage. If you need to check current build or library docs online, go ahead.

Are you gonna build this?

make sure you review the code using coderabbit

Try freeSponsored — opens CodeRabbit in a new tab