nProbe
nProbe copied to clipboard
ToS working?
Looking into a network congestion issue , possible in correctly classified dscp/tos markings
nprobe is running on a debian "network management" machine that has multiple nics for monitoring cisco span ports, with flow data (v9) default templates being sent to plixer scrutinizer.
wireshark capture on the monitoring ports on the debian machine shows DSCP/ToS markings on the customer network flows
looking at captured wireshark flow data being sent from nprobe to scrutinizer we can see the field IP ToS is present but the data is always 0x00.
there was a similar issue posted #92
Is this to be expected?