# libprotoident mit Homebrew, Nix installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für libprotoident in AI-Agent-Workflows.

## Installation

```sh
sudo av install brew:libprotoident
```

Weitere Installationsbefehle:

### macOS

- Homebrew (100%):

```sh
brew install libprotoident
```

  Evidenz: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#libprotoident
```

  Evidenz: nixpkgs package indexes: pkgs/by-name/li/libprotoident/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## Paketfakten

- **Paketschlüssel:** brew:libprotoident
- **Paketmanager:** Homebrew
- **Paketmanager-Seite:** <https://formulae.brew.sh/formula/libprotoident>
- **Version:** 2.0.15-2
- **Quellzusammenfassung:** Performs application layer protocol identification for flows
- **Homepage:** <https://github.com/LibtraceTeam/libprotoident>
- **Repository:** <https://github.com/LibtraceTeam/libprotoident>
- **Lizenz:** LGPL-3.0-or-later
- **Quellarchiv:** <https://github.com/LibtraceTeam/libprotoident/archive/refs/tags/2.0.15-2.tar.gz>
- **Generiert:** 2026-08-04T22:13:35+00:00

## Executables

- lpi_arff (cli)
- lpi_find_unknown (cli)
- lpi_protoident (cli)
- lpi_arff (Alias)
- lpi_find_unknown (Alias)
- lpi_protoident (Alias)

## Abhängigkeiten

- libflowmanager
- libtrace

## Build-Abhängigkeiten

- autoconf
- automake
- libtool

## Installationsverhalten

- Post-install-Hook: nicht definiert
- Bottle: verfügbar auf arm64_big_sur, arm64_linux, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, big_sur, monterey, sonoma, ventura, x86_64_linux

## Version und Aktualität

- Seite generiert: 2026-08-04
- Manager-Version: 2.0.15-2
- lokale Daten: OK
- Upstream-Repository: https://github.com/LibtraceTeam/libprotoident
- neueste erkannte Version: 2.0.15-2 (aktuell)
- Info: No package-manager update timestamp was available.
## Projektgeschichte und Nutzung

libprotoident is a lightweight network-traffic classification library from the University of Waikato WAND research group. Its niche is application protocol identification using only a small amount of payload from each direction of a flow.

### Projektgeschichte

The source headers credit the University of Waikato WAND research group and carry copyright years beginning in 2011. The public GitHub repository was created on 2014-03-20, and the README identifies Shane Alcock as author with additional contributors.

The project frames itself as a deliberately limited form of deep packet inspection: it uses the first four bytes of application payload sent in each direction, plus flow metadata, instead of requiring complete packet payload capture.

### Adoptionsgeschichte

libprotoident's adoption is concentrated in packet-trace and traffic-analysis circles rather than broad application development. Its README ties it to `libtrace` and `libflowmanager`, and its bundled tools operate on libtrace trace URIs, including live network-interface sources.

### Wie es verwendet wird

The package provides a library API plus command-line tools: `lpi_protoident` identifies flows, `lpi_find_unknown` reports unidentified flows to aid new rule development, and `lpi_arff` emits ARFF output for Weka workflows.

### Warum Paket-Nerds sich dafür interessieren

For package maintainers, libprotoident is interesting because it sits between academic network measurement and practical CLI tooling. It pulls in the LibtraceTeam stack and gives users a packaged way to run protocol classification experiments without building the WAND tools by hand.

### Zeitleiste

- 2011: Source headers identify University of Waikato WAND work beginning in this period.
- 2014-03-20: The public GitHub repository was created.
- 2017-06-28: Version 2.0.11 added many protocols and moved tools to parallel libtrace and libflowmanager 3 compatibility.
- 2020-11-12: Version 2.0.15 added protocols, an industrial-control-systems category, and category lookup APIs.

### Related projects

- libtrace, libflowmanager, Weka, packet-trace analysis tools, and other traffic-classification projects such as nDPI and Zeek occupy adjacent space.

### Quellen

- <https://api.github.com/repos/LibtraceTeam/libprotoident>
- <https://api.github.com/repos/LibtraceTeam/libprotoident/releases>
- <https://github.com/LibtraceTeam/libprotoident>
- <https://raw.githubusercontent.com/LibtraceTeam/libprotoident/master/README>
- <https://raw.githubusercontent.com/LibtraceTeam/libprotoident/master/lib/libprotoident.h>


## Sicherheitshinweise

library-like package without higher-risk signals.

- **Geiger-Risiko:** grün / niedrig
- library-like package without higher-risk signals

## Details aus der Quelldatenbank

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** libprotoident
- **Version Scheme:** 0
- **Revision:** 0
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** stable

## Andere Paketmanager-Einträge

- Nix - libprotoident: normalized package name match | nixpkgs package indexes: pkgs/by-name/li/libprotoident/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1


## Verwandte Links

- [Source-control packages](https://pkg.so/de/source-control-tools/) - Belongs to a source-control command family.
- [Terminal utility packages](https://pkg.so/de/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Networking and protocol packages](https://pkg.so/de/networking-protocol-tools/) - Matched network, protocol, or remote-service metadata.
- [Homebrew utility packages](https://pkg.so/de/brew-utility-packages/) - Matched Homebrew package provider.
- [libtrace](https://pkg.so/de/brew/libtrace/) - Runtime dependency declared by Homebrew.
- [libtool](https://pkg.so/de/brew/libtool/) - Build dependency declared by Homebrew.
- [autoconf](https://pkg.so/de/brew/autoconf/) - Build dependency declared by Homebrew.
- [automake](https://pkg.so/de/brew/automake/) - Build dependency declared by Homebrew.
- [ndpi](https://pkg.so/de/brew/ndpi/) - Shares pkgdb curated category or tags: cli, deep-packet-inspection, networking, traffic-analysis.
- [argus-clients](https://pkg.so/de/brew/argus-clients/) - Shares pkgdb curated category or tags: cli, networking, traffic-analysis.
- [spoofdpi](https://pkg.so/de/brew/spoofdpi/) - Shares pkgdb curated category or tags: cli, deep-packet-inspection, networking.
- [rustnet](https://pkg.so/de/brew/rustnet/) - Shares pkgdb curated category or tags: cli, deep-packet-inspection, networking.
- [darkstat](https://pkg.so/de/brew/darkstat/) - Shares pkgdb curated category or tags: cli, network-traffic, networking, traffic-analysis.
- [tcpsplit](https://pkg.so/de/brew/tcpsplit/) - Shares pkgdb curated category or tags: cli, flow-analysis, networking.
- [c-ares](https://pkg.so/de/brew/c-ares/) - Shares pkgdb curated category or tags: cli, networking.
- [unbound](https://pkg.so/de/brew/unbound/) - Shares pkgdb curated category or tags: cli, networking.
- [sniffer](https://pkg.so/de/brew/sniffer/) - Local metadata places this package in an adjacent workflow. Shared terms: analysis, cli, network, networking, packet.

## Combined YAML source

View the package source record on GitHub. [combined/libprotoident.yml](https://github.com/mxcl/pkgdb/blob/main/combined/libprotoident.yml)


## Quellen

- pkg.so package database
- Geiger risk classifier
- package-page enrichment
- curated package history
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- external package-manager database matches
- cross-ecosystem install command graph
