[f-nsp] TCS with spoof support not working

Oliver Adam oadam at madao.de
Mon Jun 8 08:05:54 EDT 2009


Are you sure the cache server is going to use the client IP as source 
address for its packets? The spoofing counters look for packets 
coming from the cache servers MAC address using a non-cache IP 
address. The counter are not going to increase in case there is no 
such traffic.

R, Oliver

At 15:44 07.06.2009, Samit wrote:
> >> Cache Server Name                Admin-status Hash-distribution
> >> bluecoat                         6            0
> >>
> >> HTTP Traffic  From <-> to  Web-Caches
> >>
> >> Name: bluecoat        IP: 192.168.40.142    State: 6   Groups =   1  3
> >>
> >>                                      Host->Web-cache
> >> Web-cache->Host
> >>            State   CurCon TotCon     Packets   Octets     Packets
> >> Octets
> >>                                      Spoof pkt Spoof oct  Spoof pkt
> >> Spoof oct
> >> Web-Server active  0      0          4515919   2068851043 0         0
> >>
> >>                                      0         0          0         0
> >>
> >> Client     active  5903   187341446  252270927 3288932869
> >> 16098549142944827043
> >> Total              5903   187341446  256786846 1062816616
> >> 16098549142944827043






More information about the foundry-nsp mailing list