I have built from source suricata and NTOP/pf_ring and run suricata using the following switches:
- suricata -c /etc/suricata/suricata.yaml -D --pfring-int=ens1
Looking in stats.log for a pf_ring related line and I don’t see anything.
- Should there be a pf_ring stats entry?
- If not, is there another way to verify suricata is using pf_ring?