From owner-freebsd-questions@FreeBSD.ORG Mon Oct 24 21:54:29 2005 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 3AE7416A420 for ; Mon, 24 Oct 2005 21:54:29 +0000 (GMT) (envelope-from user@dhp.com) Received: from shell.dhp.com (shell.dhp.com [199.245.105.1]) by mx1.FreeBSD.org (Postfix) with ESMTP id 55EE043D5C for ; Mon, 24 Oct 2005 21:54:28 +0000 (GMT) (envelope-from user@dhp.com) Received: by shell.dhp.com (Postfix, from userid 896) id 36F963135D; Mon, 24 Oct 2005 17:54:27 -0400 (EDT) Date: Mon, 24 Oct 2005 17:54:27 -0400 (EDT) From: user To: "Andrew P." In-Reply-To: Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-questions@freebsd.org Subject: Re: traffic accounting per username with ipfw in 5.4 ? (more) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 24 Oct 2005 21:54:29 -0000 Hello, On Tue, 25 Oct 2005, Andrew P. wrote: > On 10/25/05, user wrote: > > > > I remember that ipfw had been augmented some time ago to do traffic > > counting, etc., based on usernames ... but I see no mention of that in the > > ipfw man page on my 5.4-RELEASE system. > > > > Is this something that only exists in IPFW2 ? Does ipfw2 even exist > > anymore ? > > > > Can someone clarify for me what is going on with regard to what used to be > > called IPFW2, FreeBSD 5.x, and per-user traffic counting ? > > > > thanks. > > ipfw2 replaced ipfw in 5.x > > Read the manpage more carefully, please. Search > for "uid" option. Thanks - I was searching for username and getting nowhere. Also, thank you for the clarification regarding ipfw2/ipfw and their current state. I notice that the traffic accounting per uid only applies to traffic initiated by that user, and initiated from the local machine. If I scp a file away from the machine (as user X) the traffic does not get incremented, and if I scp a file to the local machine (as user X) it also does not get incremented - even though those are non-anonymous actions that occur under the auspices of a particular username. Doe anyone have any suggestions for traffic accounting (of particularly ssh traffic) on a per user basis, for _all_ traffic that occurs under the auspices of that username, and not just what _they themselves_ initiate, personally, in their own login shell ? Thank you.