google / stenographer

Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. Discussion/announcements at stenographer@googlegroups.com

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Query Language Documentation Inconsistency

TheShankapotomus opened this issue · comments

Under the sub-section "Query Language" on the main README.md there is a flaw in the query language referencing time specific queries. In the BPF subset definitions, underneath "#Stenographer-specific time additions:", the fourth line defines packets after a relative time as "before 3h ago" and should be corrected to "after 3h ago".