Tribal Chicken

Security. Malware Research. Digital Forensics.

Running Arkime on FreeBSD

Arkime (formerly Moloch) is a large scale, open source, indexed packet capture and search system.

I run a single-node Arkime instance on my IoT network for full-take packet capture as part of my IoT Lab, as well as for general monitoring. Running Arkime on FreeBSD isn't officially supported, but it can be made to work pretty easily.

Arkime is available at https://arkime.com.

The detail for running Arkime on FreeBSD 12/13 is on Github here: https://gist.github.com/tribalchicken/921e677a670fb1081491dbd3d12cbbf1

(Gist embedded below for convenience):