--- Begin Message ---
On Fri, 12 Dec 2025 00:53:40 -0800
Guy Harris <[email protected]> wrote:

>  11, 2025, at 7:50 PM, Stephen Hemminger via tcpdump-workers 
> <[email protected]> wrote:
> 
> > I have a meta-question about DPDK support in tcpdump/libpcap.
> > The current model where libpcap is a primary DPDK process is not that 
> > useful.
> > Only really usable as hardware sniffer.
> > 
> > The better model would be for libpcap to implement the DPDK pdump API
> > which has tcpdump (or wireshark) running as a secondary process.  
> 
> As this is talking about libpcap, presumably you mean "which would have a 
> program using libpcap, such as tcpdump or Wireshark, running as a seondary 
> process"; they might be the *primary* users of libpcap, but they're not the 
> *only* users (Snort and scapy both use it).

Thought there was a version of scapy that goes direct to DPDK already. The DPDK 
test infrastructure was using it.
Not sure about snort. Going through pcap for this kind of stuff has significant 
overhead that makes
it slower.

--- End Message ---
_______________________________________________
tcpdump-workers mailing list -- [email protected]
To unsubscribe send an email to [email protected]
%(web_page_url)slistinfo%(cgiext)s/%(_internal_name)s

Reply via email to