Date: Wed, 28 Dec 2022 08:39:30 -0600 (CST) From: Dan Mack <mack@macktronics.com> To: Sami Halabi <sodynet1@gmail.com> Cc: FreeBSD Current <freebsd-current@freebsd.org> Subject: Re: native recording of all network connections on freebsd Message-ID: <134dcd9-30d-b2d9-2732-992cf2310d8@macktronics.com> In-Reply-To: <CAEW%2BogbJrKJR%2BQJ2hmzvAOTaX6YoftMT0GrEcqEOhwAMddczbg@mail.gmail.com> References: <b2ea51ee-3944-b8d7-e0a8-8e4f16ebb8f@macktronics.com> <CAEW%2BogbJrKJR%2BQJ2hmzvAOTaX6YoftMT0GrEcqEOhwAMddczbg@mail.gmail.com>
next in thread | previous in thread | raw e-mail | index | archive | help
Thank you, Oh how dumb I am - I'll just have pf do it using 'log all'. Dan On Wed, 28 Dec 2022, Sami Halabi wrote: > using firewall ike ipfw with rule to log any to any would be a start.. for > advanced use, stateful fw so You can log start of connections > > ?????? ??? ??, 28 ????? 2022, 16:21, ??? Dan Mack ?<mack@macktronics.com>: > >> >> I'm wondering if anyone can help point me at a good way to continously >> capture every inbound and outbound connection made to a freebsd system. >> I'd prefer a way that is native in base if possible. I don't really want >> to record all the packets, just the src:dest:rport:dport stats. >> >> Happy to RTFM as well, >> >> Dan >> >> >
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?134dcd9-30d-b2d9-2732-992cf2310d8>