On Mon, Sep 19, 2005 at 04:22:13PM -0300, Patricia wrote: > Dear Vladimir, >
Hello, > The log from tcpdump is: > > endace:/etc/init.d# tcpdump -i eth1 src 10.24.65.1 > tcpdump: listening on eth1 > 15:58:09.880385 arp who-has 10.24.65.51 tell > 10.24.65.1 > 15:58:09.881259 10.24.65.1.1026 > 10.24.65.51.9800: > udp 1216 I need full tcpdump file in order to tell what is wrong with format of your Netflow packets. Something like tcpdump -i eth1 -s 1500 -w netflow.log would be much more helpful. v. _______________________________________________ Flow-tools mailing list [EMAIL PROTECTED] http://mailman.splintered.net/mailman/listinfo/flow-tools
