I'm using pmacct on a mirrored port at the head end of my network. I'm running approximately 15Mbps average with spikes going as high as 30Mbps over the connection. Things seem to be working very well and I'm happy that I found pmacct.
I have seen a lot of traffic on 0.0.0.0 (about 400 GB since the beginning of this month!). As far as I know, that's not a valid IP address. When I do tcpdump on my main router, I don't see anything directly addressed to 0.0.0.0. Does anyone have any idea why I would see so much traffic being accounted on this address? Thanks! -- Joe Nelson Air Wired http://www.airwired.net
