[Oisf-users] Suricata with PF_RING on latest git

Martin Holste mcholste at gmail.com
Fri Jul 6 15:46:28 UTC 2012


> Yes, I'm running Snort in clustered mode, and passivedns and httpry
> seperately.

Ok, Luca, can you confirm that there was a change from 5.1 to 5.4 that
would affect how BPF works in transparent_mode=0?  Otherwise maybe my
mystery of the missing packets wasn't solved after all, though the
evidence was very compelling for my theory on BPF.



More information about the Oisf-users mailing list