Hi there folks,

Also I am asking again, why do I see this:

IP states added:
        268221 TCP
        61708 UDP
        46932 ICMP
        25624447 hits
        38323511 misses
        0 maximum
        0 no memory
        874 bkts in use
        1424 active
        108617 expired
        266820 closed
State logging enabled

State table bucket statistics:
        874 in use
        5.69% bucket usage
        0 minimal length
        3 maximal length
        1.074 average length

[EMAIL PROTECTED] /usr/home/wzuber# ipfstat -C -R -sl | grep ttl | wc
     954    3897   15870


Why is there a disparity in the number of states I can retrieve with ipfstat and the statistics listed.

What does active and bkts really represent? 1424 and 874 seem a bit off to me. Then when I dump the state table I can only see 954 states there?


Can someone explain what the 9/11 means? I see 0/7 on other packets as well


206.251.251.2 -> 66.218.73.7 pass 0x40004702 pr 6 state 9/11 bkt 8293
        tag 0 ttl 103
        57040 -> 80 36feabed:e28f2ed2 1072<<1:1072<<1
        cmsk 0000 smsk 0000 isc 0x0 s0 36fea445/e28f2c7d
        FWD:ISN inc 0 sumd 0
        REV:ISN inc 0 sumd 0
        forward: pkts in 0 bytes in 0 pkts out 6 bytes out 2283
        backward: pkts in 6 bytes in 916 pkts out 0 bytes out 0
        pass out quick keep frags keep state    IPv4
pkt_flags & 0(10000) = 1000, pkt_options & ffffffff = 0, ffffffff = 0
        pkt_security & ffff = 0, pkt_auth & ffff = 0
        is_flx 0 0x1 0x1 0
        interfaces: in -[],em0[em0] out em0[em0],-[]


Thanks,

--Wes


Reply via email to