dintdistact and similar data

Carter Bullard carter at qosient.com
Thu Jul 4 15:41:53 EDT 2013


Hey Dave,
This is a place holder for printing the various interpacket arrival time histograms
that we have support for, but haven't turned on yet.  Same for packet size histograms,
which are implemented but also not turned on.  Was going to do them for argus-3.0.8.

Do you have an need for them?

Carter


On Jul 4, 2013, at 11:44 AM, "David Edelman" <dedelman at iname.com> wrote:

> Carter,
> 
> I'm pretty sure that I enabled all the right things in argus.conf but I
> don't get anything when I specifiy      -s +dintdistact as an option to ra. 
> ra is 3.0.7.10 and  and argus is 3.0.7.1 I do get the MAC addresses and user
> data so I'm sure that the configuration file is being read and there is only
> one argus.conf file on the system.
> 
> What should I be looking for?
> 
> --Dave
> 
> 
> ARGUS_FLOW_TYPE="Bidirectional"
> ARGUS_FLOW_KEY="CLASSIC_5_TUPLE"
> ARGUS_DAEMON=yes
> ARGUS_MONITOR_ID=`hostname`    // IPv4 address returned
> ARGUS_ACCESS_PORT=561
> ARGUS_INTERFACE=eth2
> ARGUS_GO_PROMISCUOUS=yes
> ARGUS_OUTPUT_FILE=/var/log/argus/argus.out
> ARGUS_SET_PID=yes
> ARGUS_PID_PATH="/var/run"
> ARGUS_FLOW_STATUS_INTERVAL=5
> ARGUS_MAR_STATUS_INTERVAL=60
> ARGUS_GENERATE_RESPONSE_TIME_DATA=yes
> ARGUS_GENERATE_PACKET_SIZE=yes
> ARGUS_GENERATE_JITTER_DATA=yes
> ARGUS_GENERATE_MAC_DATA=yes
> ARGUS_GENERATE_APPBYTE_METRIC=yes
> ARGUS_GENERATE_TCP_PERF_METRIC=yes
> ARGUS_GENERATE_BIDIRECTIONAL_TIMESTAMPS=yes
> ARGUS_CAPTURE_DATA_LEN=1024
> ARGUS_TUNNEL_DISCOVERY="yes"
> ARGUS_KEYSTROKE="yes"
> 
> 
> 
> 
> 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6837 bytes
Desc: not available
URL: <https://pairlist1.pair.net/pipermail/argus/attachments/20130704/dcc72c31/attachment.bin>


More information about the argus mailing list