[Bro] Question about capture loss script vs. broctl netstats

Seth Hall seth at icir.org
Thu Jun 27 11:38:12 PDT 2013


On Jun 27, 2013, at 2:21 PM, Derek Banks <itsecderek at gmail.com> wrote:

> Thanks for all the responses.  I put an Intel Pro 1000 in this morning and still using PF_Ring.  I three hours of running Bro, I don't see any reported packet loss.  Looks like the Broadcom Card was most likely the problem.

Oh yeah, I would never use Broadcom for sniffing.  I've had way too many problems with them.

  .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro.org/





More information about the Bro mailing list