Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 15 Apr 2010 20:16:45 -0500
From:      Michael Hughes <michael@thehugheslogcabin.net>
To:        freebsd-questions@freebsd.org
Subject:   Re: about tcpdump
Message-ID:  <20100415201645.2ef97db4@TheHughesLogcabin.net>
In-Reply-To: <D93D58B75554414780C5B91D58293BED@desktop2002>
References:  <D93D58B75554414780C5B91D58293BED@desktop2002>

next in thread | previous in thread | raw e-mail | index | archive | help
--Sig_/+yjoaUJef7EW2RzxR7jwbaI
Content-Type: text/plain; charset=iso-8859-9
Content-Transfer-Encoding: quoted-printable

On Thu, 15 Apr 2010 23:37:09 +0300
Yavuz Ma=FElak <yavuz.maslak@netiletisim.net> wrote:

> I have a network. I wish to log all incoming and outgoing trafficc
> using tcpdump on my gateway server. But I don't want to log these
> traffic's data because of they take up much on disk.
> I only want to log which ports were used, which ip addresses were
> reached. How can I do these using tcpdump ?
> Could you give me an example or docs?
> I use freebsd7.2
>=20

Have you thought about using ARGUS (Audit Record Generation and
Utilization System)?

--=20
Michael Hughes                      Log Home living is the best
Michael@TheHughesLogcabin.net

--Sig_/+yjoaUJef7EW2RzxR7jwbaI
Content-Type: application/pgp-signature; name=signature.asc
Content-Disposition: attachment; filename=signature.asc

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (FreeBSD)

iD8DBQFLx7p9Y1dMyGuHVOwRAsBlAJ0c22eedUmZz3uQNwYXiz0MqQ0KuACfY07S
6v75ODXqUMZm/Dex8iYKZBM=
=CkbW
-----END PGP SIGNATURE-----

--Sig_/+yjoaUJef7EW2RzxR7jwbaI--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20100415201645.2ef97db4>