{"repo":"FenkoHQ/dnsmonster","free":true,"listed":false,"github":"https://github.com/FenkoHQ/dnsmonster","clone":"git clone https://github.com/FenkoHQ/dnsmonster.git","description":"Passive DNS Capture and Monitoring Toolkit","language":"Go","stars":360,"topics":["passivedns","passive-dns","dns-server","dns","dns-traffic","security-tools","security","golang","nsm","pcap"],"license":"GPL-3.0","category":"security-tools","readme_excerpt":"We're exploring a managed SaaS solution for dnsmonster! Help shape the future of passive DNS monitoring by sharing your feedback and requirements: Take our quick survey Table of Contents - Dnsmonster - Main features - Installation - Linux - Container - Build manually - Build statically - Windows - FreeBSD and MacOS - Architecture - All-in-one Installation using Docker - All-in-one Demo - Enterprise Deployment - Configuration - Command line options - Environment variables - Configuration file - What's the retention policy - Sampling and Skipping - pre-process sampling - skip domains - allow domains - SAMPLE in clickhouse SELECT queries - Supported Inputs - Supported Outputs - Roadmap - Related projects Dnsmonster Passive DNS monitoring framework built on Golang. dnsmonster implements a packet sniffer for DNS traffic. It can accept traffic from a pcap file, a live interface or a dnstap socket, and can be used to index and store hundreds of thousands of DNS queries per second as it has shown to be capable of indexing 200k+ DNS queries per second on a commodity computer. It aims to be scalable, simple, and easy to use, and help security teams to understand the details about an enterprise's DNS traffic. dnsmonster doesn't look to follow DNS conversations, rather it aims to index DNS packets as soon as they come in. It also doesn't aim to breach the privacy of the end-users, with the ability to mask Layer 3 IPs (IPv4 and IPv6), enabling teams to perform trend analysis on aggregated","default_branch":null,"files":null,"tree":[],"storefront":"/r/FenkoHQ","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/FenkoHQ/dnsmonster/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}