GoFlow2
A NetFlow, IPFIX and sFlow collector written in Go that normalises flow data into one format.
These buttons open the developer's own site, repository or store listing in a new tab. wares.gg does not host downloads.
About GoFlow2
GoFlow2 receives flow samples from network devices over NetFlow, IPFIX and sFlow, decodes them, and serializes the information (IP addresses, interfaces, routers) into a common format for further processing.
It is built for setups that receive a large volume of network samples and need a collector that scales, typically feeding the output into a message queue or database. A Dockerfile and compose examples are included in the repository.
Strengths
- Handles NetFlow, IPFIX and sFlow in one collector
- Normalises different flow protocols into a common format
- Designed for high sample volumes
- Docker and compose files included
Limitations
- Collector only; needs separate storage and dashboards
- Configuration requires familiarity with flow protocols
Details
- Pricing
- FreeFree and open source.
- License
- Open source, license not stated
- Developer
- The GoFlow2 contributors
- Platforms
- Linux, Self-hosted, Command line
- How it runs
- Downloadable app, Self-hosted
- Account
- Not required
- Works offline
- Yes
- Best suited for
- Network teams building a scalable flow data pipeline
- Categories
- Network tools
- Last verified
- Added
- Provenance
- Facts checked against the developer's own pages and store listings, 1 sources on file.
Alternatives to GoFlow2
Compare allSoftware that can replace GoFlow2 for an important use case, and what changes if you switch.
nfdump
A suite of command-line tools for collecting, processing and analyzing NetFlow, IPFIX and sFlow data.
nfdump is a BSD-licensed command-line suite that collects and also filters, aggregates and stores flow records, with geolocation enrichment.
pmacct
A set of passive network monitoring tools that collect NetFlow, IPFIX, sFlow, packet and BGP data.
pmacct collects NetFlow, IPFIX and sFlow and also gathers BGP, BMP and RPKI routing data, configured through text files with many keys.
Akvorado
Self-hosted flow collector, enricher and visualizer for NetFlow, IPFIX and sFlow traffic data.
Akvorado collects, enriches and stores flows with its own web console for exploring traffic, but involves several components to deploy and is not open source.
Similar software
Related functionality, not necessarily a direct replacement.
ntopng
Web-based network traffic probe that shows real-time and historical flows by host, protocol and application.
Arkime
Store and search captured network traffic through a web interface.
Malcolm
A self-hosted network traffic analysis suite that turns PCAP files, Zeek logs and Suricata alerts into searchable dashboards.
Hubble
A network, service and security observability tool for Kubernetes clusters running Cilium, built on eBPF.