nfdump
« Back to VersTracker
Description:
Tools to collect and process netflow data on the command-line
Type: Formula  |  Latest Version: 1.7.7@0  |  Tracked Since: Nov 9, 2025
Links: Homepage  |  formulae.brew.sh
Category: Networking
Tags: networking netflow security analysis monitoring
Install: brew install nfdump
About:
nfdump is a powerful toolset designed to collect and process netflow data on the command-line. It reads data from flow tools like nfcapd and allows users to filter, aggregate, and analyze network traffic efficiently. Its main value proposition is providing high-performance analysis capabilities for large volumes of flow data.
Key Features:
  • High-performance reading and writing of flow data
  • Flexible filtering and aggregation syntax
  • Support for multiple flow versions (NetFlow v1, v5, v7, v9, IPFIX)
  • Integration with tools like nfcapd for continuous collection
Use Cases:
  • Network traffic analysis and monitoring
  • Security incident response and forensics
  • Capacity planning and usage billing
Alternatives:
  • pmacct – pmacct offers similar network monitoring capabilities but often focuses more on BGP and IP accounting integration.
  • ntopng – ntopng provides a web-based GUI for traffic analysis, whereas nfdump is primarily command-line driven.
Version History
Detected Version Rev Change Commit
Nov 9, 2025 8:03pm 0 VERSION_BUMP aac1fb3e
Sep 16, 2025 5:16pm 0 VERSION_BUMP 42c6ea3d
Oct 23, 2024 6:46pm 0 VERSION_BUMP e8004f0b