[Oisf-users] Profiling options doesn't works in suricata-1.1rc1 ?

carlopmart carlopmart at gmail.com
Wed Nov 9 17:28:33 UTC 2011


Hi all,

  I have configured profiling options in suricata.yaml config file:

profiling:
   rules:
      enabled: yes
      filename: rule_perf.log
      append: yes
      sort: avgticks
      limit: 100

   packets:
      enabled: yes
      filename: packet_stats.log
      append: yes
      csv:
        enabled: no
        filename: packet_stats.csv

  ... but neither rule_perf.log and packets_stats.log are created:

root at eorlingas:/nsm/sguil_sensor/idpesx02# ls -al
total 124
drwxr-xr-x 3 root root  4096 2011-11-09 17:13 .
drwxr-xr-x 3 root root  4096 2011-11-08 22:01 ..
drwxr-xr-x 3 root root  4096 2011-11-09 17:13 dailylogs
-rw-r----- 1 root root     0 2011-11-09 17:13 drop.log
-rw-r----- 1 root root 69215 2011-11-09 17:26 http.log
-rw-r----- 1 root root     0 2011-11-09 17:13 idpesx02.alerts
-rw-r----- 1 root root     0 2011-11-09 17:13 suricata.out.1320858835
-rw-r--r-- 1 root root 33260 2011-11-09 17:25 suricata.stats

  Do I need to activate or reconfigure or recompile suricata with 
another specific options??

  I have compiled with "--enable-nfqueue --disable-gccmarch-native" flags.

Thanks.
-- 
CL Martinez
carlopmart {at} gmail {d0t} com



More information about the Oisf-users mailing list