If the most active IP did not send any packets, there is a division by zero in the PortscanAttack. This can happen if, for example, an IP has a lot of packets received but none sent.
If the most active IP did not send any packets, there is a division by zero in the PortscanAttack. This can happen if, for example, an IP has a lot of packets received but none sent.
If the most active IP did not send any packets, there is a division by zero in the PortscanAttack. This can happen if, for example, an IP has a lot of packets received but none sent.
I plan to fix this by taking into account both, the sent and received packets.