pkg.soopen package index

brew / Rang 4421

tcpflow mit Homebrew, apk, apt, dnf, MacPorts, Nix, pacman, zypper installieren

Prüfe Installationswege, Executables, Metadaten und Sicherheitshinweise für tcpflow in AI-Agent-Workflows.

Installation

Weitere Installationsbefehle

macOS

Homebrewverifiziert · 100%
brew install tcpflow

local Homebrew formula metadata

MacPortsverifiziert · 94%
sudo port install tcpflow

MacPorts ports tree · net/tcpflow/Portfile · Quelle: api.github.com

Linux

Alpine Linux apkverifiziert · 92%
sudo apk add tcpflow

Alpine Linux edge package indexes · tcpflow · Quelle: dl-cdn.alpinelinux.org

Debian aptverifiziert · 92%
sudo apt install tcpflow

Debian stable package indexes · tcpflow · Quelle: deb.debian.org

Fedora dnfverifiziert · 92%
sudo dnf install tcpflow

Fedora Rawhide package metadata · tcpflow · Quelle: dl.fedoraproject.org

Nixverifiziert · 92%
nix profile install nixpkgs#tcpflow

nixpkgs package indexes · pkgs/by-name/tc/tcpflow/package.nix · Quelle: api.github.com

Arch Linux pacmanverifiziert · 92%
sudo pacman -S tcpflow

Arch Linux sync databases · tcpflow · Quelle: geo.mirror.pkgbuild.com

openSUSE zypperverifiziert · 92%
sudo zypper install tcpflow

openSUSE Tumbleweed package metadata · tcpflow · Quelle: download.opensuse.org

Überblick

Paketzusammenfassung

TCP/IP packet demultiplexer

Befehle und Aliase

  • tcpflow

Verlauf

Projektgeschichte und Nutzung

tcpflow is a packet-capture and TCP stream reassembly tool that writes each reconstructed flow to files for protocol analysis, debugging, and network forensics.

Projektgeschichte

The upstream README says Jeremy Elson originally wrote tcpflow to capture data sent by programs using undocumented network protocols, including streaming media and instant messaging applications, so those protocols could be reverse engineered.

The README also records that Simson Garfinkel later took over maintenance after leaving Sandstorm Enterprises and needing a TCP flow reassembly program. The public GitHub repository was created in 2012 and continues as the upstream development home.

Adoptionsgeschichte

tcpflow's README states that most common GNU/Linux distributions ship it in their repositories, and the input package facts show it packaged by Homebrew and major Linux and Unix package systems.

Its niche adoption follows from doing something adjacent to tcpdump and Wireshark but more file-oriented: reconstructing application byte streams into separate artifacts that can be inspected after capture.

Wie es verwendet wird

Common usage is to capture live traffic or read stored tcpdump packet flows, split each TCP direction into a named file, and optionally post-process HTTP responses into headers and bodies.

The README positions it for understanding network packet flows, protocol debugging, malware analysis from HTTP sessions, and forensic workflows.

Warum Paket-Nerds sich dafür interessieren

Package nerds care because tcpflow sits in the pcap toolchain but exposes a different abstraction: not packets, but reconstructed conversations. That makes it useful as a small dependency-free-ish CLI companion to tcpdump in forensic and debugging toolboxes.

It is also a packaging case study in older network tooling modernized over time, with libpcap, OpenSSL/zlib-style dependencies, autotools, CMake notes, RPM building instructions, and active distribution packaging all visible in upstream docs.

Zeitleiste

  • 1998: Sandstorm Enterprises founded, later producing related commercial TCP flow tools TCPDEMUX and NetIntercept.
  • 2012: simsong/tcpflow GitHub repository created.
  • 2013: Upstream README recommends citing the Naval Postgraduate School technical report on tcpflow.
  • 2020: Maintainer status report describes porting tcpflow and related libraries to modern C++.

Related projects

  • tcpdump and libpcap are related because tcpflow can process tcpdump packet flows and uses the LBL Packet Capture Library.
  • Wireshark is mentioned upstream as a contrasting packet analyzer; TCPDEMUX and NetIntercept are named as related commercial flow tools.

Sicherheitslage

Risikostufe: grün

narrow executable package without higher-risk signals.

Risikoklassifikator

grün Risiko · niedrig Konfidenz · appliance

Warum

  • narrow executable package without higher-risk signals

Signale

  • metadata:no-higher-risk-signals

Installationsverhalten

  • In den Formelmetadaten ist kein Homebrew-Post-install-Hook erfasst.
  • Homebrew-Bottle-Metadaten sind für 6 Plattformziele verfügbar.
  • Installiert mit 1 Laufzeitabhängigkeiten.
  • Build-Metadaten listen 1 Build-Abhängigkeiten.

Empfohlene Prüfung

Prüfe vor unbeaufsichtigter Agent-Nutzung, ob das Tool Klartext-Credentials liest, Remote-Zustand schreibt, Artefakte veröffentlicht oder Plugins ausführt.

Executables

Installierte Executables

BefehlArtSichtbarkeitHinweis
tcpflowcliglobales Executable

Aktualität

Version und Aktualität

Diese Signale trennen das Alter der Seitengenerierung, Aktivität des Paketmanagers und Upstream-Release-Vergleich. Versionsrückstand wird nur gemeldet, wenn eine Evidenz-URL und vergleichbare Versionen vorhanden sind.

Seite generiert2026-08-04
Manager-Version1.6.1
Manager aktualisiert
lokale DatenOK
Upstreamnot checked
neueste erkannte Versionnicht erkannt

https://github.com/simsong/tcpflow

  • InfoNo package-manager update timestamp was available.niedrig Konfidenz
  • InfoNo cached GitHub release or tag data was available.https://github.com/simsong/tcpflownone Konfidenz

Installationsmetadaten

Paketmetadaten

Paketschlüsselbrew:tcpflow
Version1.6.1
PaketmanagerHomebrew
Paketmanager-Seitehttps://formulae.brew.sh/formula/tcpflow
Homepagehttps://github.com/simsong/tcpflow
Repositoryhttps://github.com/simsong/tcpflow
LizenzGPL-3.0-only
Quellarchivhttps://corp.digitalcorpora.org/downloads/tcpflow/tcpflow-1.6.1.tar.gz
Abhängigkeitenopenssl@4
Build-Abhängigkeitenboost
Von macOS bereitgestellte Bibliothekenbzip2, libpcap
Bottleverfügbar (auf arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-installnicht definiert
Dienstkeiner deklariert

Registry-Fakten

Details aus der Quelldatenbank

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nametcpflow
Version Scheme0
Revision1
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

Source-Datenbank-Treffer

Andere Paketmanager-Einträge

Treffer stammen aus externen Paketmanager-Indizes und bleiben von lokalen Automic-Vault-Paketlinks getrennt.

Debian apt95%

tcpflow 1.6.1-3+b1

TCP flow recorder

https://github.com/simsong/tcpflow

sudo apt install tcpflow
  • Section: net
  • Architecture: amd64
  • Source Package: tcpflow
  • 8 Abhängigkeiten
  • 1 optionale Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Debian stable package indexes · deb.debian.org · Debian stable package indexes: tcpflow from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz
Debian apt95%

tcpflow-nox 1.6.1-3+b1

TCP flow recorder - version without X11 dependencies

https://github.com/simsong/tcpflow

sudo apt install tcpflow-nox
  • Section: net
  • Architecture: amd64
  • Source Package: tcpflow
  • 7 Abhängigkeiten
  • 1 stellt bereit
  • 1 optionale Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Debian stable package indexes · deb.debian.org · Debian stable package indexes: tcpflow-nox from https://deb.debian.org/debian/dists/stable/main/binary-amd64/Packages.xz
Nix95%

tcpflow

nix profile install nixpkgs#tcpflow
  • normalized package name match
  • Abgeglichen nach: Tcpflow
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/tc/tcpflow/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
Ubuntu apt95%

tcpflow 1.6.1-3build2

TCP flow recorder

https://github.com/simsong/tcpflow

sudo apt install tcpflow
  • Section: universe/net
  • Architecture: amd64
  • 8 Abhängigkeiten
  • 1 optionale Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Ubuntu 24.04 LTS package indexes · archive.ubuntu.com · Ubuntu 24.04 LTS package indexes: tcpflow from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz
Ubuntu apt95%

tcpflow-nox 1.6.1-3build2

TCP flow recorder - version without X11 dependencies

https://github.com/simsong/tcpflow

sudo apt install tcpflow-nox
  • Section: universe/net
  • Architecture: amd64
  • Source Package: tcpflow
  • 7 Abhängigkeiten
  • 1 stellt bereit
  • 1 optionale Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Ubuntu 24.04 LTS package indexes · archive.ubuntu.com · Ubuntu 24.04 LTS package indexes: tcpflow-nox from https://archive.ubuntu.com/ubuntu/dists/noble/universe/binary-amd64/Packages.gz
apk95%

tcpflow 1.6.1-r14

A Tool for monitoring, capturing and storing TCP connections flows

https://github.com/simsong/tcpflow

sudo apk add tcpflow
  • License: GPL-3.0-only
  • Architecture: x86_64
  • Source Package: tcpflow
  • 1 Abhängigkeiten
  • 1 stellt bereit
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Alpine Linux edge package indexes · dl-cdn.alpinelinux.org · Alpine Linux edge package indexes: tcpflow from https://dl-cdn.alpinelinux.org/alpine/edge/main/x86_64/APKINDEX.tar.gz
apk95%

tcpflow-doc 1.6.1-r14

A Tool for monitoring, capturing and storing TCP connections flows (documentation)

https://github.com/simsong/tcpflow

sudo apk add tcpflow-doc
  • License: GPL-3.0-only
  • Architecture: x86_64
  • Source Package: tcpflow
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Alpine Linux edge package indexes · dl-cdn.alpinelinux.org · Alpine Linux edge package indexes: tcpflow-doc from https://dl-cdn.alpinelinux.org/alpine/edge/main/x86_64/APKINDEX.tar.gz
dnf95%

tcpflow 1.6.2-0.3.8d47b53.fc45

Network traffic recorder

https://github.com/simsong/tcpflow

sudo dnf install tcpflow
  • License: GPL-1.0-or-later
  • Category: Unspecified
  • Architecture: x86_64
  • Source Package: tcpflow
  • 9 Abhängigkeiten
  • 1 stellt bereit
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Fedora Rawhide package metadata · dl.fedoraproject.org · Fedora Rawhide package metadata: tcpflow from https://dl.fedoraproject.org/pub/fedora/linux/development/rawhide/Everything/x86_64/os/repodata/210a2053c8e007daf9ae39c2a21daaed9b2ddd07d63ecffa597050361e73650c-primary.xml.zst
pacman95%

tcpflow 1.6.1-2

Captures data transmitted as part of TCP connections then stores the data conveniently

https://github.com/simsong/tcpflow

sudo pacman -S tcpflow
  • License: GPL
  • Architecture: x86_64
  • 4 Abhängigkeiten
  • normalized package name match
  • Abgeglichen nach: Tcpflow
Arch Linux sync databases · geo.mirror.pkgbuild.com · Arch Linux sync databases: tcpflow from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz
zypper95%

tcpflow 1.6.1-2.17

Program for capturing and collecting TCP streams

https://github.com/simsong/tcpflow

sudo zypper install tcpflow
  • License: GPL-3.0-or-later
  • Category: Productivity/Networking/Diagnostic
  • Architecture: x86_64
  • Source Package: tcpflow
  • 6 Abhängigkeiten
  • 1 stellt bereit
  • normalized package name match
  • Abgeglichen nach: Tcpflow
openSUSE Tumbleweed package metadata · download.opensuse.org · openSUSE Tumbleweed package metadata: tcpflow from https://download.opensuse.org/tumbleweed/repo/oss/repodata/50b07339cb64c8ed4091bdbabddadc1ff5737b090e478818a195b40d8a3292861a879139b4a3987c31109699fde9fbf4a716367ddf4eef77da75f96e3193d6ed-primary.xml.zst
MacPorts95%

tcpflow

sudo port install tcpflow
  • normalized package name match
  • Abgeglichen nach: Tcpflow
MacPorts ports tree · api.github.com · MacPorts ports tree: net/tcpflow/Portfile from https://api.github.com/repos/macports/macports-ports/git/trees/master?recursive=1

Quellspur

Aus Repository-Daten generiert

Diese Seite wird von av-web aus dem privaten Paket-SQLite-Artefakt bereitgestellt, das scripts/generate-pkg-sqlite.py erstellt.

Verwendete Quellen

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation