Re: [pmacct-discussion] Packet counters for sFlow sampled ethernet flows

2017-06-14 Thread Paolo Lucente
Hi Daniel, It seems you are looking to add the following yo your config: sfacctd_renormalize: true Paolo On Mon, Jun 12, 2017 at 03:39:30PM +0200, Daniel Swarbrick wrote: > Hi, > > Firstly, thanks for the excellent community support on pmacct! > > I have a question regarding how sfacctd coun

Re: [pmacct-discussion] Configuring pmacct/nfacctd as a Proxy/Ingest node & Visualize Data

2017-06-14 Thread Paolo Lucente
Hi Sami, Let me take inline the only question that went unanswered by previous replies: On Sat, Jun 10, 2017 at 08:37:24PM -0400, Sami wrote: > > What i want to do now is to log NetFlow traffic on files (.csv/.log ..), do > you have any sample configuration for this? > You can refer to chapt

[pmacct-discussion] Strange behavior with protocol field on nfacctd

2017-06-14 Thread Yann Belin
Hello, I am experiencing a strange behavior on nfacctd. * On version 1.6.1, flows with protocol field set to 6 (TCP) will not show up at all. * On version 1.6.2, flows with protocol field set to 6 (TCP) will show up, but ip_src and ip_dst will be empty. In both cases, flows with protocol field s