From owner-freebsd-stable Thu Oct 25 10:52: 0 2001 Delivered-To: freebsd-stable@freebsd.org Received: from c527597-a.cstvl1.sfba.home.com (c527597-a.cstvl1.sfba.home.com [24.176.204.87]) by hub.freebsd.org (Postfix) with ESMTP id 2C11137B403; Thu, 25 Oct 2001 10:51:49 -0700 (PDT) Received: (from bmah@localhost) by c527597-a.cstvl1.sfba.home.com (8.11.6/8.11.6) id f9PHpds33147; Thu, 25 Oct 2001 10:51:39 -0700 (PDT) (envelope-from bmah) Message-Id: <200110251751.f9PHpds33147@c527597-a.cstvl1.sfba.home.com> X-Mailer: exmh version 2.5 07/13/2001 with nmh-1.0.4 To: sudz@ns3g.com Cc: freebsd-stable@FreeBSD.ORG, freebsd-questions@FreeBSD.ORG Subject: Re: Openssh In-Reply-To: References: Comments: In-reply-to "Colin Legendre" message dated "Thu, 25 Oct 2001 13:19:35 -0400." From: "Bruce A. Mah" Reply-To: bmah@FreeBSD.ORG X-Face: g~c`.{#4q0"(V*b#g[i~rXgm*w;:nMfz%_RZLma)UgGN&=j`5vXoU^@n5v4:OO)c["!w)nD/!!~e4Sj7LiT'6*wZ83454H""lb{CC%T37O!!'S$S&D}sem7I[A 2V%N&+ X-Image-Url: http://www.employees.org/~bmah/Images/bmah-cisco-small.gif X-Url: http://www.employees.org/~bmah/ Mime-Version: 1.0 Content-Type: multipart/signed; boundary="==_Exmh_1249018302P"; micalg=pgp-sha1; protocol="application/pgp-signature" Content-Transfer-Encoding: 7bit Date: Thu, 25 Oct 2001 10:51:38 -0700 Sender: owner-freebsd-stable@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG --==_Exmh_1249018302P Content-Type: text/plain; charset=us-ascii If memory serves me right, "Colin Legendre" wrote: > Once again though, if it was a little bit of trafic I could see it but this > much nope. > > AND why would it be different on a 4.3 box from a 4.4 box? and why different > when using ssh1 vs ssh2? As at least two other people have pointed out, in your situation you are seeing not only the traffic you intend to measure, but you're also seeing traffic generated by your measurements. You really need to disambiguate these two. If you need to look at traffic from the perspective of the remote side of your connections, try running tcpdump with the -r flag to save your packet data to a file. Then view it afterwards (after your experiment is over) by using the -w flag. RTFM for more details. As I type this, I'm looking at the Ethernet port being used by my workstation, which has multiple SSH protocol 2 connections to other machines. I see no evidence of a 40-50Kbps background load...I'm pretty sure I'd notice this because that's a fair fraction of the uplink bandwidth to my ISP. The question of how much traffic seems to be generated by SSH protocol 1 versus protocol 2, when your measurements are interfering with the thing you're trying to measure, just isn't meaningful. Good luck, Bruce. --==_Exmh_1249018302P Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.6 (FreeBSD) Comment: Exmh version 2.3.1+ 05/14/2001 iD8DBQE72FEq2MoxcVugUsMRAoJ3AJ9iJQ3jyQIyGuTx4Z4K+HuWjlEMXACeMtIf RKwB+NUhJY4mNhhe77xy4tY= =wlgf -----END PGP SIGNATURE----- --==_Exmh_1249018302P-- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-stable" in the body of the message