Subra
in V9 the two directions IN/OUT are listed in the same flow (e.g. bytes_in and bytes_out) so you should have this info already.

Regards, Luca

On 09/lug/07, at 21:08, subramanian ramasamy wrote:

Hi,

Iam new to NetFlow and nProbe.

I have a tcpdump file which is a complete 20 min SSH Traffic between two machines. I ran nProbe with input from the captured tcpdump file and asked it to export it to a collector machine. I ran tcpdump on the collector's machine and captured the NF V9 traffic from nProbe and saved this to a dmp file. I later examined this dmp file using wireshark.

What is see is 4 flowsets: Template flowset:0, options flowset:1, Data flowset:261(options data), Data Flowset: 260.

The data flowset 260 seems to contains data for only one-direction of the my recorded 20 min TCP flow, client to server direction.

How do i get nProbe to tell/export the information for the other direction, ie. server to client direction ?

Thanks,
Subra.
_______________________________________________
Ntop-dev mailing list
[email protected]
http://listgateway.unipi.it/mailman/listinfo/ntop-dev

_______________________________________________
Ntop-dev mailing list
[email protected]
http://listgateway.unipi.it/mailman/listinfo/ntop-dev

Reply via email to