Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 28 Dec 2022 08:39:30 -0600 (CST)
From:      Dan Mack <mack@macktronics.com>
To:        Sami Halabi <sodynet1@gmail.com>
Cc:        FreeBSD Current <freebsd-current@freebsd.org>
Subject:   Re: native recording of all network connections on freebsd
Message-ID:  <134dcd9-30d-b2d9-2732-992cf2310d8@macktronics.com>
In-Reply-To: <CAEW%2BogbJrKJR%2BQJ2hmzvAOTaX6YoftMT0GrEcqEOhwAMddczbg@mail.gmail.com>
References:  <b2ea51ee-3944-b8d7-e0a8-8e4f16ebb8f@macktronics.com> <CAEW%2BogbJrKJR%2BQJ2hmzvAOTaX6YoftMT0GrEcqEOhwAMddczbg@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help

Thank you, Oh how dumb I am - I'll just have pf do it using 'log all'.

Dan

On Wed, 28 Dec 2022, Sami Halabi wrote:

> using firewall ike ipfw with rule to log any to any would be a start.. for
> advanced use, stateful fw so You can log start of connections
>
> ?????? ??? ??, 28 ????? 2022, 16:21, ??? Dan Mack ?<mack@macktronics.com>:
>
>>
>> I'm wondering if anyone can help point me at a good way to continously
>> capture every inbound and outbound connection made to a freebsd system.
>> I'd prefer a way that is native in base if possible.   I don't really want
>> to record all the packets, just the src:dest:rport:dport stats.
>>
>> Happy to RTFM as well,
>>
>> Dan
>>
>>
>



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?134dcd9-30d-b2d9-2732-992cf2310d8>