slackbuilds/network/p0f
David Spencer 88c5cb927e network/p0f: Updated for version 3.09b. 2016-04-27 18:16:06 +07:00
..
README network/p0f: Updated for version 3.06b. 2013-05-19 09:12:20 -04:00
doinst.sh
p0f.SlackBuild network/p0f: Updated for version 3.09b. 2016-04-27 18:16:06 +07:00
p0f.info network/p0f: Updated for version 3.09b. 2016-04-27 18:16:06 +07:00
slack-desc network/p0f: Updated for version 3.06b. 2013-05-19 09:12:20 -04:00

README

P0f is a tool that utilizes an array of sophisticated, purely passive
traffic fingerprinting mechanisms to identify the players behind any
incidental TCP/IP communications (often as little as a single normal SYN)
without interfering in any way. Version 3 is a complete rewrite of the
original codebase, incorporating a significant number of improvements
to network-level fingerprinting, and introducing the ability to reason
about application-level payloads (e.g., HTTP).

To build and install the optional signature and API tools, specify
TOOLS=yes to the SlackBuild, for example

  TOOLS=yes sh p0f.SlackBuild