From owner-freebsd-isp@FreeBSD.ORG Mon Jul 19 14:52:04 2004 Return-Path: Delivered-To: freebsd-isp@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id A92FE16A4CE for ; Mon, 19 Jul 2004 14:52:04 +0000 (GMT) Received: from mail.act.co.za (mail.act.co.za [196.15.213.131]) by mx1.FreeBSD.org (Postfix) with ESMTP id 0DC1B43D5A for ; Mon, 19 Jul 2004 14:51:50 +0000 (GMT) (envelope-from spidey@act.co.za) Received: from localhost.act.co.za ([127.0.0.1] helo=localhost) by mail.act.co.za with esmtp (Exim 4.24; FreeBSD 5.0) id 1BmZZG-000NDp-Ih for freebsd-isp@freebsd.org; Mon, 19 Jul 2004 16:56:38 +0200 Received: from mail.act.co.za ([127.0.0.1]) by localhost (mail.act.co.za [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 89247-01 for ; Mon, 19 Jul 2004 16:56:33 +0200 (SAST) Received: from [10.0.1.11] (helo=SPIDEY) by mail.act.co.za with esmtp (Exim 4.24; FreeBSD 5.0) id 1BmZYL-000NBd-If for freebsd-isp@freebsd.org; Mon, 19 Jul 2004 16:55:41 +0200 From: "Spidey Knepscheld" To: Date: Mon, 19 Jul 2004 16:50:48 +0200 Organization: ACT Computers Message-ID: <000a01c46d9f$c81d5650$0b01000a@SPIDEY> MIME-Version: 1.0 X-Priority: 3 (Normal) X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook, Build 10.0.2627 X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1441 Importance: Normal X-Virus-Scanned: by amavisd-new at act.co.za Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit X-Content-Filtered-By: Mailman/MimeDel 2.1.1 Subject: Traffic Monitor X-BeenThere: freebsd-isp@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: spidey@act.co.za List-Id: Internet Services Providers List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 19 Jul 2004 14:52:04 -0000 Hi I am an ISP running FreeBSD as a firewall and as a Mail Server. My problem is that I am not able to monitor the amount of traffic that user are using on my network. My network looks like this: My Link comes in on a Cisco 805 from the router it goes to the first NIC on the Firewall from the second NIC it runs into a Cisco Catalyst and then to the network.On the catalyst I mirrored the data coming from the network to the Firewall to one port and I have a FreeBSD box on that port just to monitor the traffic. What I am looking for is some app that could show me live what ip on my network is utilizing what part of the bandwidth.I know there are a million apps available but I need to see from IP ???? to IP ???? ???? kb/s and then see how much of the 256k is still available. Don't laugh !!I have a 256k Diginet connection and I would like to see who is killing my network. I do get live graphs from my upstream supplier but it shows the line utilization from my router and not who is using what. So I can't be proactive in solving speed issues I need to wait for it to happen and then by a process of elimination disconnect segments of the network and see when the graph drops. I hope this makes sense to someone thank you Spidey