ntop/ntopng

Web-based Traffic and Cybersecurity Network Traffic Monitoring

View on GitHub ↗Jump to charts ↓

Summary Information

Updated 35 minutes ago
Added to GitGenius on September 8th, 2026
Created on April 30th, 2015
Open Issues & Pull Requests: 300 (+0)
GitHub issues: Enabled
Number of forks: 762
Total Stargazers: 8,146 (+0)
Total Subscribers: 152 (+0)

Charts & Analytics

Fetching additional details & charts...

Issue Activity (beta)

Issue API getrepoissuespagesummary failed: 429 Rate limit exceeded. Please try again later.

Detailed Description

ntopng is a web-based network traffic monitoring application that provides real-time visibility into network activity and security threats.

The tool addresses the need for comprehensive network monitoring by capturing and analyzing traffic flows from multiple sources including packet inspection, NetFlow, sFlow, IPFIX, and SNMP. It processes this data to identify traffic patterns, detect anomalies, and support cybersecurity investigations. The application presents findings through a web interface, making network behavior accessible to operators without requiring command-line expertise.

Organizations running traditional networks, cloud infrastructure, or containerized environments should consider ntopng if they need detailed traffic analysis and flow-based monitoring. The tool supports deployment across diverse platforms including Linux distributions, Windows, FreeBSD variants, and ARM-based systems like Raspberry Pi, as well as Kubernetes environments. It integrates with eBPF for efficient kernel-level packet processing and works alongside container orchestration platforms. Teams already using NetFlow or sFlow infrastructure can feed that data directly into ntopng rather than replacing existing collectors.

The project maintains active development with regular updates to its core monitoring engine and web interface. The codebase shows ongoing refinement of traffic analysis capabilities and expansion of supported data sources. Documentation is actively maintained through both a comprehensive user guide and API reference, indicating sustained effort to help new users get started. The tool receives continuous improvements to its detection and analysis features, suggesting the maintainers respond to evolving network monitoring requirements.