[Oisf-users] High Suricata capture.kernel_drops

Andreas Herz andi at geekosphere.org
Tue Jul 10 19:19:56 UTC 2018


On 10/07/18 at 15:00, fatema bannatwala wrote:
> I am pretty new to Suricata and started to play around with it.
> I have Suricata 4.0.4 running on a CentOS7 box, that has 20 cores (40
> on-line cpus) and an intel  X710 NIC, and 64GB RAM.

What kernel are you using and what driver versoin?

> Any idea how can I reduce the kernel drop rate of packets? or how can I
> check if af_packet threads are working correctly?

Do you have looked into syslog etc. if there are any related messages?

How is the systemload?

-- 
Andreas Herz


More information about the Oisf-users mailing list