Re: [Nfdump-discuss] Time in NAT

2014-06-11 Thread Martin Šoltis
Hi Peter, thanks for reply. Only documentation that i have is here https://github.com/aabc/ipt-netflow there are docs and source code for kernel and iptables module, so maybe it's usefull for you. Just one thing. There must be some bug, because when i look with nfdump 1.6.12 on dump created

Re: [Nfdump-discuss] Time in NAT

2014-06-10 Thread Peter Haag
Hi Martin, According to the listing, you are using the ASA/NEL extension. This was specifically implemented for CISCO ASA devices. There is no guarantee, that it works with other exporters. There were changes in 1.6.12 to support the latest ASA devices. If you can provide me with a detailed docum

[Nfdump-discuss] Time in NAT

2014-06-03 Thread Martin Šoltis
Hello, i try to configure nfdump, but there is probably a bug in the latest version. I'm using ipt_netflow 1.8.2 kernel module and nfcapd for packet capturing. So the problem is, that when i use nfdump to view NATted packets then it looks like this 2014-06-03 13:29:44.503 INVALID UDP 111.