I have finally run out of a single CPU.
Russell Fulton <[email protected]> Tue, 22 May 2018 14:11:34 +1200
| Newsgroups | gmane.network.argus |
|---|---|
| Message-ID | <[email protected]> |
Hi All the argus processes on my sensors are now sitting on 100% cpu and presumably dropping data. One obvious approach is to use filters and multiple argus processes, unless argus has the ability to multi-thread processing. Google turns up this tantalising snippet from http://qosient.com/argus/news.shtml: > Mar 11 13:41:48 EST 2011 – Argus 3.0.4 Released > Argus 3.0.4 and its clients are now available. Changes for 3.0.4 include enhanced multi-threaded support, But I can find nothing else on the subject. So what are people doing with argus on 10G links? I am running suricata (with af-packet) and that is going nicely and I should have enough memory and CPU to run argus as well. Russell