I can confirm this is now working as intended. I am able to read the pcap files properly now.
Thanks!!!! Mike On Sep 29, 2014, at 11:00 AM, Tobias Klauser <[email protected]> wrote: > Hi Mike > > On 2014-09-25 at 15:25:58 +0200, Mike Reeves <[email protected]> wrote: >> kernel: 2.6.32-431.23.3.el6.x86_64 >> version RC3 with your tpacketv2 updates >> >> The packets are only malformed in the pcap files. >> >> -i eth1 -o /nsm/pcap/$TODAY/ -s --prefix snort.log. --verbose --ring-size >> 50MiB --interval 50MiB > > The bug should now be fixed in the master branch. I could only test it > on a system where tpacket v3 would be available in principle, so I'd be > glad if you could verify it also works on your system. > > Thanks > Tobias -- You received this message because you are subscribed to the Google Groups "netsniff-ng" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
