Hi,
I always have assumed that the "Port" fields of nfdump output are just a
number between 1 and 64k. Now I've come across values with a dot in between:
$nfdump -r nfcapd.200710101555 -o "fmt:%sp%dp%byt" | grep "\." | head -10
771 0.0 85
771 0.0 123
771 0.0 123
771 0.0 121
0 8.0 61
771 0.0 513
771 0.0 513
771 0.0 254
771 0.0 85
8 0.0 46
There are not many records of that type in the file, only about 60 out
of 14000.
Can anybody tell me what that means?
Thanks and regards
Ralf
-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems? Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
Nfdump-discuss mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/nfdump-discuss