I used the command kdd99extractor traffic.pcap > extractor.txt to extract KDD99 features from the traffic.pcap file, but the resulting number of traffic entries after extraction is significantly smaller than the original number of entries in traffic.pcap. The attached kdd99.zip contains the traffic.pcap and extractor.txt files. The pcap file contains 2959 traffic entries, but only 194 traffic entries were extracted with KDD99 features as shown in the extractor.txt file. I do not know why.. Any suggestions or ideas are welcome :)
kdd99.zip
I used the command
kdd99extractor traffic.pcap > extractor.txt
to extract KDD99 features from thetraffic.pcap
file, but the resulting number of traffic entries after extraction is significantly smaller than the original number of entries intraffic.pcap
. The attachedkdd99.zip
contains thetraffic.pcap
andextractor.txt
files. The pcap file contains 2959 traffic entries, but only 194 traffic entries were extracted with KDD99 features as shown in theextractor.txt
file. I do not know why.. Any suggestions or ideas are welcome :) kdd99.zip