Moloch

Moloch is an open source large scale IPv4 PCAP capturing, indexing and database
system. A simple web interface is provided for PCAP browsing, searching, and
exporting. APIs are exposed that allow PCAP data and JSON formatted session
data to be downloaded directly. Simple security is implemented by using https
and HTTP digest password support. Moloch is not meant to replace IDS engines but
instead work along side them to store and index all the network traffic in standard
PCAP format, providing fast access. Moloch is built to be deployed across many
machines and can scale to handle multiple gigabits/sec of traffic.