Skip to content


Open Source full network packet capture, with visual dashboard.


 $ wget
 $ sudo dpkg -i arkime_3.4.2-1_amd64.deb
 # Have Configure script install ElasticSearch
 $ sudo /opt/arkime/bin/Configure
 $ sudo systemctl enable elasticsearch
 $ sudo systemctl start elasticsearch
 # http://ESHOST:9200
 # delete all data - /opt/arkime/db/
 $ sudo init /opt/arkime/bin/ admin "Admin User" THEPASSWORD --admin
 $ sudo systemctl enable arkimecapture
 $ sudo systemctl start arkimecapture
 $ sudo systemctl enable arkimeviewer
 $ sudo systemctl start arkimeviewer
 # log files
 $ sudo less opt/arkime/logs/viewer.log 
 $ sudo less /opt/arkime/logs/capture.log
 # Login with set user & password 
 # http://arkimeHOST:8005
 # Configs - /opt/arkime/etc/config.ini

 # you want IP -> Geo/ASN to work, you need to setup a maxmind account and the geoipupdate program.