Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 20 Oct 2006 13:29:52 -0700
From:      "Kurt Buff" <kurt.buff@gmail.com>
To:        "Zbigniew Szalbot" <zbyszek@szalbot.homedns.org>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: monitoring lan->wan
Message-ID:  <a9f4a3860610201329he830c6ctdcfeeb67011c25af@mail.gmail.com>
In-Reply-To: <20061020221439.V69505@192.168.11.51>
References:  <20061020164010.U62717@192.168.11.51> <a9f4a3860610201103v679fd16fp769b7e76c4404417@mail.gmail.com> <20061020221439.V69505@192.168.11.51>

next in thread | previous in thread | raw e-mail | index | archive | help
On 10/20/06, Zbigniew Szalbot <zbyszek@szalbot.homedns.org> wrote:
> Hi all,
>
> On Fri, 20 Oct 2006, Kurt Buff wrote:
>
> > If you wish to characterize the traffic to and from the Internet by
> > protocol and/or user, then you'll have to do something more than
> > simply using SNMP to monitor throughput on the router. In that case,
> > you'll need to have your FreeBSD box actually parse the traffic, or
> > get a netflow from the router (assuming that it can do that.) and ntop
> > is a good start for the software you want, or perhaps etherape.
> > Assuming that netflow isn't available from the router (and I think
> > that's a fairly safe bet) the trick will be making sure that your
> > FreeBSD box will see the traffic, and for that you'll need something
> > like one of the following setups:
>
> All I can do with the router is to enable logging to a syslog, which means
> I can connect it to FBSD, can't I?
>
> But I understand now that things will be a little more difficult than I
> thought :). Anyway, thanks for all the pointers!

syslog <> SNMP.

Monitoring traffic by parsing syslog messages seems unlikely at best,
but you'll want to tak a look at some samplings of your syslog
messages to be sure. I'm not aware of any programs that do that, which
is not to say that they don't exist, just that I don't know about
them.

Kurt



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?a9f4a3860610201329he830c6ctdcfeeb67011c25af>