I am looking to monitor my network usage (on a packet level). Everything. Logging is a strict requirement. I need to be able to log HTTP and DNS queries, for storage, over time.
Yes, I have the network setup in place to capture this. I have been using Colasoft Capsa, but am looking for different solutions due to stability issues.
Yes, I have tried Wireshark. I can't seem to get it to discard packets and focus on logging what I want in a sane manner. Also, some form of endpoint graphing or reporting (top talkers, popular endpoints, and usage breakdown and filtering by traffic type) is a requirement. If I am blatantly missing something let me know. But I don't think Wireshark will work for me.
Obviously with Capsa, I am in a Windows environment but I am fine with moving to Linux if need be. I have spent quite a bit of time looking but cannot find an alternative.
I have SNMP graphing and services checking already covered, for what it is worth.
I am not against a paid solution, but would prefer anything open source. Any of your thoughts and suggestions would be highly appreciated!