diff --git a/README.md b/README.md index e9fefa47b88fc8de75b456fff348d34e8ba53e6e..1367f5432cdfb569fc536701ea9a8f9dce5454b8 100644 --- a/README.md +++ b/README.md @@ -48,7 +48,8 @@ we use the Wireshark tool to record the network data in pcap format. They are av </div> ### Flows capture -We use the CICFlowmeter tool to flow capture. +We use the CICFlowMeter tool to extract flows from Pcap files +*The first packet determines the forward (source to destination) and backward (destination to source) directions. <div align="center"> <img src="images/image-6.png" alt="alt text" width="500" />