Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 14 Jun 2004 18:45:54 +0100
From:      Bruce M Simpson <bms@spc.org>
To:        Julian Elischer <julian@elischer.org>
Cc:        'Sergey Lyubka' <devnull@uptsoft.com>
Subject:   Re: memory mapped packet capturing - bpf replacement ?
Message-ID:  <20040614174554.GE14722@empiric.dek.spc.org>
In-Reply-To: <Pine.BSF.4.21.0406141014120.30464-100000@InterJet.elischer.org>
References:  <FE045D4D9F7AED4CBFF1B3B813C8533701BD40C7@mail.sandvine.com> <Pine.BSF.4.21.0406141014120.30464-100000@InterJet.elischer.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, Jun 14, 2004 at 10:15:14AM -0700, Julian Elischer wrote:
> don't forget that bpf is not copying the entire packet, just the
> header..

If you look at Sergey's benchmark.c, you will see that the snaplen was
set to 32KB.

BMS



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040614174554.GE14722>