리눅스에서 netstat -s 해서 나오는 통계결과에 대한 의미를 알고 싶습니다.
netstat -s 를 쳤을때 현재 테스트 서버에서 올라오는 결과는 다음과 같습니다.
Ip:
588994678 total packets received
26069090 forwarded
0 incoming packets discarded
547760825 incoming packets delivered
128829837 requests sent out
2 reassemblies required
1 packets reassembled ok
4 fragments received ok
8 fragments created
Icmp:
21 ICMP messages received
0 input ICMP message failed.
ICMP input histogram:
destination unreachable: 21
21825428 ICMP messages sent
0 ICMP messages failed
ICMP output histogram:
destination unreachable: 21825256
redirect: 172
Tcp:
3398 active connections openings
807 passive connection openings
173 failed connection attempts
39 connection resets received
31 connections established
523012054 segments received
80065441 segments send out
5844 segments retransmited
0 bad segments received.
545 resets sent
Udp:
1080243 packets received
21825235 packets to unknown port received.
12 packet receive errors
864639 packets sent
TcpExt:
61 invalid SYN cookies received
3406 packets pruned from receive queue because of socket buffer overrun
1369 TCP sockets finished time wait in fast timer
1714495 delayed acks sent
134 delayed acks further delayed because of locked socket
Quick ack mode was activated 30 times
13884 packets directly queued to recvmsg prequeue.
2297762226 packets directly received from backlog
1882055 packets directly received from prequeue
489866133 packets header predicted
13519989 packets header predicted and directly queued to user
49497 acknowledgments not containing data received
15735909 predicted acknowledgments
7 times recovered from packet loss due to SACK data
157 congestion windows recovered after partial ack
191 TCP data loss events
21 timeouts after SACK recovery
54 fast retransmits
15 forward retransmits
2396 other TCP timeouts
1923721 packets collapsed in receive queue due to low socket buffer
36 DSACKs sent for old packets
16 DSACKs received
13 connections reset due to unexpected data
5 connections reset due to early user close
363 connections aborted due to timeout
전반적인 사항들은 알겠는데 TcpExt 항목들에 대해 몇가지 궁금한게 있어서 문의좀 드려봅니다.
이 통계데이터는 어떤 의미가 있는지 구글을 아무리 뒤져봐도 자세히 나온데가 없네요.
혹시 위 통계의 각 항목마다의 의미를 아시거나, 설명이 되어 있는 싸이트를 아시는분 알려주세요..;
특히 "connections reset due to early user close" 이 항목이 궁금합니다. 어떤상황에서 이 값이 증가하는지요..;;
snmp와 netstat
IP에서 UDP까지는 /proc/net/snmp 통계정보를, TcpExt와IpExt는 /proc/net/netstat의 정보를 보여줍니다.
connections reset due to early user close는 말그대로 커넥션을 유저측에서 강제적으로 일찍 끊어서 정상종료를 통하지 않고 reset된 커넥션의 수인것 같네요.
===== ===== ===== ===== =====
그럼 이만 총총...[竹]
http://elflord.egloos.com
===== ===== ===== ===== =====
그럼 이만 총총...[竹]
http://elflord.egloos.com
댓글 달기