-
Notifications
You must be signed in to change notification settings - Fork 71
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Debug of NDPI #42
Comments
The debug_printf function was used in old ndpi_init_detection_module api. Unfortunately, i have a little free time. But, in this weekend I will check the problem related for SSL connections. |
I was thinking of the NDPI_LOG macro in the nDPI code. I search to have the same level detection of ndpiReader (the little programme which comes with nDPI) in the kernel. But now, I have made some search (but no significative) and I will continue this week. If I find a solution, I tell you. |
There are several differences between ndpiReader and ndpi-netfilter. In ndpiReader the detection is made in sniffer mode (using libpcap) - so, by default, this application can inspect everything on network interface. But, in ndpi-netfilter the inspection is made by netfilter flow (into proper firewall chain) - using the "flow struct". For this reason, we need to identify all packets directions. So, the dpi_check is used only to map all possibles flows to ndpi detection - no protocol is enabled at this moment. All protocols are disabled when xt_ndpi module is loaded. For performance reason, the protocol is enabled only by firewall rule (with the ndpi_enable_protocols function). -- line 821 in main.c code
|
Hi,
Do you know activate the macro NDPI_LOG in the kernel ?
I searched it , but I didn't find.
Thanks in advance
The text was updated successfully, but these errors were encountered: