On Tue, 1 Oct 2013, Robert wrote:
One event is one log message, right, they are mimmicking our traffic, we have a bigger amount of firewall, mail, shibolith logs so those would be the larger loads on the spirent. I lowered the spirent to 220k and I get about 200k on the tcpdump, but I get the 220k messages with my grep command for all the logs for that second. Robert.
what is the tcpdump command you ran and what output did it give (specifically looking for 'packets dropped', but just in case there is anything else)
David Lang _______________________________________________ rsyslog mailing list http://lists.adiscon.net/mailman/listinfo/rsyslog http://www.rsyslog.com/professional-services/ What's up with rsyslog? Follow https://twitter.com/rgerhards NOTE WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE THAT.

