I am experiencing a strange behavior on nfacctd.
* On version 1.6.1, flows with protocol field set to 6 (TCP) will not
show up at all.
* On version 1.6.2, flows with protocol field set to 6 (TCP) will show
up, but ip_src and ip_dst will be empty.
In both cases, flows with protocol field set to 17 (UDP) show up
normally. I tried to set protocol fields to a couple of fixed values
(flows are generated by a python script) and all display normally in
both nfacct 1.6.1 and 1.6.2.... except 6/TCP, which systematically
I took tcpdump captures, but cannot see any obvious problem. anyone has an idea?
Link with logs/captures/ config -
pmacct-discussion mailing list