rasql, can do like this: ra -r file - tcp and syn

Carter Bullard carter at qosient.com
Fri Nov 18 10:03:56 EST 2011


Hey Jack,
Please read the page on the web site:
    http://qosient.com/argus/gettingstarted.shtml

Carter

On Nov 18, 2011, at 9:54 AM, argus-announce-bounces at qosient.com wrote:

> 
> From: jack adai <capjack1874 at gmail.com>
> Subject: rasql , can do like this: ra -r file - tcp and syn
> Date: November 17, 2011 9:08:02 AM EST
> To: argus-announce at qosient.com
> 
> 
> hi 
>    I am the first time to use argus, I want to find the syn send packets from DB. Is there any command by rasql can do this? And start the argus: # argus -w packet.out ,but I use the command
>   # ra -r packet.out // show nothing
>  # ra -r packet.out -A  //show  below
> #########################
> Totalrecords 20        TotalManRecords 20        TotalFarRecords 0        TotalPkts 0        TotalBytes 0
> ###############################
>   thanks!
> 
> 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://pairlist1.pair.net/pipermail/argus/attachments/20111118/8d0f89c1/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4367 bytes
Desc: not available
URL: <https://pairlist1.pair.net/pipermail/argus/attachments/20111118/8d0f89c1/attachment.bin>


More information about the argus mailing list