# 使用 Homebrew, Nix 安装 libprotoident

查看 libprotoident 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

## 安装

```sh
sudo av install brew:libprotoident
```

其他安装命令:

### macOS

- Homebrew (100%):

```sh
brew install libprotoident
```

  证据: local Homebrew formula metadata

### Linux

- Nix (92%):

```sh
nix profile install nixpkgs#libprotoident
```

  证据: nixpkgs package indexes: pkgs/by-name/li/libprotoident/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

## 软件包事实

- **软件包键:** brew:libprotoident
- **软件包管理器:** Homebrew
- **软件包管理器页面:** <https://formulae.brew.sh/formula/libprotoident>
- **版本:** 2.0.15-2
- **来源摘要:** Performs application layer protocol identification for flows
- **主页:** <https://github.com/LibtraceTeam/libprotoident>
- **仓库:** <https://github.com/LibtraceTeam/libprotoident>
- **许可证:** LGPL-3.0-or-later
- **源码归档:** <https://github.com/LibtraceTeam/libprotoident/archive/refs/tags/2.0.15-2.tar.gz>
- **已生成:** 2026-08-04T22:13:35+00:00

## 可执行文件

- lpi_arff (cli)
- lpi_find_unknown (cli)
- lpi_protoident (cli)
- lpi_arff (别名)
- lpi_find_unknown (别名)
- lpi_protoident (别名)

## 依赖

- libflowmanager
- libtrace

## 构建依赖

- autoconf
- automake
- libtool

## 安装行为

- post-install 钩子: 未定义
- Bottle: 可用 于 arm64_big_sur, arm64_linux, arm64_monterey, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, big_sur, monterey, sonoma, ventura, x86_64_linux

## 版本和新鲜度

- 页面生成时间: 2026-08-04
- 管理器版本: 2.0.15-2
- 本地数据: OK
- 上游仓库: https://github.com/LibtraceTeam/libprotoident
- 检测到的最新版本: 2.0.15-2 (当前)
- 信息: No package-manager update timestamp was available.
## 项目历史与用法

libprotoident is a lightweight network-traffic classification library from the University of Waikato WAND research group. Its niche is application protocol identification using only a small amount of payload from each direction of a flow.

### 项目历史

The source headers credit the University of Waikato WAND research group and carry copyright years beginning in 2011. The public GitHub repository was created on 2014-03-20, and the README identifies Shane Alcock as author with additional contributors.

The project frames itself as a deliberately limited form of deep packet inspection: it uses the first four bytes of application payload sent in each direction, plus flow metadata, instead of requiring complete packet payload capture.

### 采用历史

libprotoident's adoption is concentrated in packet-trace and traffic-analysis circles rather than broad application development. Its README ties it to `libtrace` and `libflowmanager`, and its bundled tools operate on libtrace trace URIs, including live network-interface sources.

### 使用方式

The package provides a library API plus command-line tools: `lpi_protoident` identifies flows, `lpi_find_unknown` reports unidentified flows to aid new rule development, and `lpi_arff` emits ARFF output for Weka workflows.

### 为什么软件包爱好者会关心

For package maintainers, libprotoident is interesting because it sits between academic network measurement and practical CLI tooling. It pulls in the LibtraceTeam stack and gives users a packaged way to run protocol classification experiments without building the WAND tools by hand.

### 时间线

- 2011: Source headers identify University of Waikato WAND work beginning in this period.
- 2014-03-20: The public GitHub repository was created.
- 2017-06-28: Version 2.0.11 added many protocols and moved tools to parallel libtrace and libflowmanager 3 compatibility.
- 2020-11-12: Version 2.0.15 added protocols, an industrial-control-systems category, and category lookup APIs.

### Related projects

- libtrace, libflowmanager, Weka, packet-trace analysis tools, and other traffic-classification projects such as nDPI and Zeek occupy adjacent space.

### 来源

- <https://api.github.com/repos/LibtraceTeam/libprotoident>
- <https://api.github.com/repos/LibtraceTeam/libprotoident/releases>
- <https://github.com/LibtraceTeam/libprotoident>
- <https://raw.githubusercontent.com/LibtraceTeam/libprotoident/master/README>
- <https://raw.githubusercontent.com/LibtraceTeam/libprotoident/master/lib/libprotoident.h>


## 安全说明

library-like package without higher-risk signals.

- **Geiger 风险:** 绿色 / 低
- library-like package without higher-risk signals

## 源数据库详情

- **Source Database:** Homebrew formula API
- **Tap:** homebrew/core
- **Full Name:** libprotoident
- **Version Scheme:** 0
- **Revision:** 0
- **Bottle Stable Root URL:** <https://ghcr.io/v2/homebrew/core>
- **Deprecated:** no
- **Disabled:** no
- **Keg Only:** no
- **URL Keys:** stable

## 其他软件包管理器记录

- Nix - libprotoident: normalized package name match | nixpkgs package indexes: pkgs/by-name/li/libprotoident/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1


## 相关链接

- [Source-control packages](https://pkg.so/zh-hans/source-control-tools/) - Belongs to a source-control command family.
- [Terminal utility packages](https://pkg.so/zh-hans/terminal-utilities/) - Matched terminal and command-line workflow metadata.
- [Networking and protocol packages](https://pkg.so/zh-hans/networking-protocol-tools/) - Matched network, protocol, or remote-service metadata.
- [Homebrew utility packages](https://pkg.so/zh-hans/brew-utility-packages/) - Matched Homebrew package provider.
- [libtrace](https://pkg.so/zh-hans/brew/libtrace/) - Runtime dependency declared by Homebrew.
- [libtool](https://pkg.so/zh-hans/brew/libtool/) - Build dependency declared by Homebrew.
- [autoconf](https://pkg.so/zh-hans/brew/autoconf/) - Build dependency declared by Homebrew.
- [automake](https://pkg.so/zh-hans/brew/automake/) - Build dependency declared by Homebrew.
- [ndpi](https://pkg.so/zh-hans/brew/ndpi/) - Shares pkgdb curated category or tags: cli, deep-packet-inspection, networking, traffic-analysis.
- [argus-clients](https://pkg.so/zh-hans/brew/argus-clients/) - Shares pkgdb curated category or tags: cli, networking, traffic-analysis.
- [spoofdpi](https://pkg.so/zh-hans/brew/spoofdpi/) - Shares pkgdb curated category or tags: cli, deep-packet-inspection, networking.
- [rustnet](https://pkg.so/zh-hans/brew/rustnet/) - Shares pkgdb curated category or tags: cli, deep-packet-inspection, networking.
- [darkstat](https://pkg.so/zh-hans/brew/darkstat/) - Shares pkgdb curated category or tags: cli, network-traffic, networking, traffic-analysis.
- [tcpsplit](https://pkg.so/zh-hans/brew/tcpsplit/) - Shares pkgdb curated category or tags: cli, flow-analysis, networking.
- [c-ares](https://pkg.so/zh-hans/brew/c-ares/) - Shares pkgdb curated category or tags: cli, networking.
- [unbound](https://pkg.so/zh-hans/brew/unbound/) - Shares pkgdb curated category or tags: cli, networking.
- [sniffer](https://pkg.so/zh-hans/brew/sniffer/) - Local metadata places this package in an adjacent workflow. Shared terms: analysis, cli, network, networking, packet.

## Combined YAML source

View the package source record on GitHub. [combined/libprotoident.yml](https://github.com/mxcl/pkgdb/blob/main/combined/libprotoident.yml)


## 来源

- pkg.so package database
- Geiger risk classifier
- package-page enrichment
- curated package history
- package version freshness
- pkgdb category and tag curation
- package relationship graph
- external package-manager database matches
- cross-ecosystem install command graph
