<html>
    <head>
      <base href="https://bugzilla.netfilter.org/" />
    </head>
    <body><table border="1" cellspacing="0" cellpadding="8">
        <tr>
          <th>Bug ID</th>
          <td><a class="bz_bug_link 
          bz_status_NEW "
   title="NEW - display_proc_conntrack_stats missing data"
   href="https://bugzilla.netfilter.org/show_bug.cgi?id=1084">1084</a>
          </td>
        </tr>

        <tr>
          <th>Summary</th>
          <td>display_proc_conntrack_stats missing data
          </td>
        </tr>

        <tr>
          <th>Product</th>
          <td>conntrack-tools
          </td>
        </tr>

        <tr>
          <th>Version</th>
          <td>unspecified
          </td>
        </tr>

        <tr>
          <th>Hardware</th>
          <td>x86_64
          </td>
        </tr>

        <tr>
          <th>OS</th>
          <td>All
          </td>
        </tr>

        <tr>
          <th>Status</th>
          <td>NEW
          </td>
        </tr>

        <tr>
          <th>Severity</th>
          <td>normal
          </td>
        </tr>

        <tr>
          <th>Priority</th>
          <td>P5
          </td>
        </tr>

        <tr>
          <th>Component</th>
          <td>conntrack
          </td>
        </tr>

        <tr>
          <th>Assignee</th>
          <td>netfilter-buglog@lists.netfilter.org
          </td>
        </tr>

        <tr>
          <th>Reporter</th>
          <td>dan@danweeks.net
          </td>
        </tr></table>
      <p>
        <div>
        <pre>display_proc_conntrack_stats only parses the first row of values from
/proc/net/stat/nf_conntrack. This means on multiprocessor systems it is often
presenting misleading metrics, missing some of the data. In cases where a CPU
other than the first is performing most of the operations, it can be especially
bad.

In the example below there are many instances where the higher values from the
second processor are unaccounted for.

cat /proc/net/stat/nf_conntrack; sudo -u nobody conntrack -S

entries  searched found new invalid ignore delete delete_list insert
insert_failed drop early_drop icmp_error  expect_new expect_create
expect_delete search_restart
0000014b  004cfa4f 04e9e53e 0049ce54 0000f543 006fd72d 005cfde7 0045abc6
0032596c 00000007 00000000 00000000 0000023f  00000001 00000002 00000001
00000000
0000014b  0328b028 38a17c68 03934d68 000db985 00c66dbf 03801ca2 01ea65ed
01fdb992 00000003 00000001 00000000 000025c8  00000017 00000016 00000017
00000000

entries           331     
searched          5044815 
found             82437441
new               4836948 
invalid           62787   
ignore            7329581 
delete            6094311 
delete_list        4565958 
insert            3299692 
insert_failed        7       
drop              0       
early_drop        0       
icmp_error        575     
expect_new        1       
expect_create        2       
expect_delete        1       
search_restart        0</pre>
        </div>
      </p>
      <hr>
      <span>You are receiving this mail because:</span>
      
      <ul>
          <li>You are watching all bug changes.</li>
      </ul>
    </body>
</html>