tcpdump mailing list archives

Re: [PATCH] pay attention to the enterprise


From: Rick Jones <rick.jones2 () hp com>
Date: Fri, 15 Apr 2011 10:43:09 -0700

On Fri, 2011-04-15 at 10:02 -0700, Guy Harris wrote:
On Apr 14, 2011, at 2:59 PM, Rick Jones wrote:

Thanks to some traces sent my way by Gavin McCullagh, and a comparison
against the output of inMon's sflowtool, I can confidently say "Yes
Virginia, there is an enterprise other than zero."  Which means lest we
start trying to decode something as what it is not, we best actually
look at the enterprise field and make sure it is one we recognize.

Checked into the trunk and 4.2 branches and pushed.

Excellent.

So, does anyone know what sFlow enterprise ID 8800 might be all about?
And within that context what an 8 byte, type 2 flow record is?-)

rick jones


-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.


Current thread: