Pretty nifty app but the build process is convoluted and seems to have assburgers .. so i figured if you took a gander at it and wanted to give it a spin this would get the ball rolling.

Just paste it in your console wait about 10min "ya it really has a 10min build time lol" and then pop your browser to BackTrack Linux and see what all the hoohaa is about.

Xplico - Internet Traffic Decoder. Network Forensic Analysis Tool (NFAT)

Code:
cd /tmp
mkdir xbuild
cd xbuild
wget http://softlayer.dl.sourceforge.net/project/xplico/Xplico%20versions/version%200.5.4/xplico-0.5.4.tgz
tar xvf xplico-0.5.4.tgz
rm xplico-0.5.4.tgz

wget http://geolite.maxmind.com/download/geoip/api/c/GeoIP-1.4.6.tar.gz 
tar zxvf GeoIP-1.4.6.tar.gz
cd GeoIP-1.4.6
./configure
make
cd ..
rm -f *.tar.gz

cd xplico*
wget http://geolite.maxmind.com/download/geoip/database/GeoLiteCity.dat.gz
gzip -d GeoLiteCity.dat.gz
rm -f *dat.gz
make

cd ..
wget http://mirror.cs.wisc.edu/pub/mirrors/ghost/GPL/ghostpdl/ghostpdl-8.70.tar.bz2
tar jxvf ghostpdl-8.70.tar.bz2
rm -f *.bz2
cd ghostpdl-8.70
make

cd ..
cp ghostpdl-8.70/main/obj/pcl6 xplico-0.5.*
rm -rf ghostpdl-8.70
cd xplico-0.5.*
make install
cd ..
rm -rf xbuild

cp /opt/xplico/cfg/apache_xi /etc/apache2/sites-enabled/xplico

echo '# xplico Host port
NameVirtualHost *:9876
Listen 9876' >> /etc/apache2/ports.conf

sed -i 's,post_max_size = 8M,post_max_size = 100M,' /etc/php5/apache2/php.ini
sed -i 's,upload_max_filesize = 2M,upload_max_filesize = 100M,' /etc/php5/apache2/php.ini

a2enmod rewrite

/etc/init.d/apache2 restart
/opt/xplico/script/sqlite_demo.sh
Anyways you should be good after that unless one of the links changes.

Cheers