problem with sFlow collector feature

Stomil stomil at gmail.com
Thu Jan 29 12:44:18 EST 2015


How should I do that? argus -S <sflow url> or other way?

On Tue, Jan 27, 2015 at 10:59 PM, Carter Bullard <carter at qosient.com> wrote:

> Hey Stomil,
> Sorry for the delayed response.
>
> The support for sFlow in the ra* programs is not complete, and so don’t
> try to use it.
> There is sflow support in argus, however.  This makes sense, since sflow
> is really
> a sampled packet technology, not really a flow technology.
>
> Try using argus on your sflow stream.  No promises that it will work, as
>  there hasn’t been a lot of testing, but it may generate some results for
> you.
>
> Carter
>
>
> > On Jan 26, 2015, at 7:32 AM, Stomil <stomil at gmail.com> wrote:
> >
> > Hello
> >
> > I try to use Argus as sFlow  (5) collector by running
> >
> > radium  -C sflow://<interface IP addr>:6343 -P 591
> >
> > It starts then as sFlow packets come in, the radium process crashes,
> here is the strace log:
> >
> > select(8, [7], NULL, NULL, {0, 150000}) = 0 (Timeout)
> > gettimeofday({1422026522, 115226}, NULL) = 0
> > select(8, [7], NULL, NULL, {0, 150000}) = 1 (in [7], left {0, 34229})
> > gettimeofday({1422026522, 231438}, NULL) = 0
> > recvfrom(7,
> "\0\0\0\5\0\0\0\1\303\273\356\16\0\0\0\0\0\0M\22\v]\361P\0\0\0\1\0\0\0\1"...,
> 2048, 0, {sa_family=AF_INET, sin_port=htons(2283), sin_addr=inet_addr("<ip
> addr>")}, [16]) = 192
> > rt_sigprocmask(SIG_UNBLOCK, [ABRT], NULL, 8) = 0
> > tgkill(27897, 27897, SIGABRT)           = 0
> > --- SIGABRT (Aborted) @ 0 (0) ---
> > Process 27897 detached
> >
> > Is there a proper way to run radium, or I have found a bug?
> >
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://pairlist1.pair.net/pipermail/argus/attachments/20150129/a68682cd/attachment.html>


More information about the argus mailing list