e728 [PF] Graphical statistics for PF - The FreeBSD Forums
The FreeBSD Forums  

Go Back   The FreeBSD Forums > Server & Networking > Firewalls

Firewalls IPFW, PF, IPF (but not limited) related discussion

Reply
 
Thread Tools Display Modes
  #1  
Old April 27th, 2012, 13:47
PascalTurbo PascalTurbo is offline
Junior Member
 
Join Date: Apr 2012
Posts: 2
Thanks: 0
Thanked 0 Times in 0 Posts
Default Graphical statistics for PF

Hi there,

We're using PF as router and firewall. Now I'd love to have some information about "usage" - traffic messuring, statistics about blocked IPs / services and so on.

Is there any tool out there which solves this? Couldn't find anything - but "PF" is hard to google ;-)

Thanks,
Pascal Turbo

Last edited by DutchDaemon; April 27th, 2012 at 22:17. Reason: Mind your writing style: http://forums.freebsd.org/showthread.php?t=18043
Reply With Quote
  #2  
Old April 27th, 2012, 13:59
SirDice's Avatar
SirDice SirDice is offline
Moderator
 
Join Date: Nov 2008
Location: Rotterdam, Netherlands
Posts: 13,713
Thanks: 47
Thanked 2,022 Times in 1,861 Posts
Default

It's not graphical but a handy tool nonetheless, sysutils/pftop.

I don't think there's anything specific for PF but you might be able to get some nice graphs using net-mgmt/cacti or net-mgmt/mrtg.

A bit more advanced would be to use NetFlow, net/pfflowd and an aggragator.
__________________
Senior UNIX Engineer at Unix Support Nederland
Experience is something you don't get until just after you need it.
Reply With Quote
  #3  
Old April 27th, 2012, 17:11
aa aa is offline
Junior Member
 
Join Date: Mar 2012
Posts: 47
Thanks: 0
Thanked 9 Times in 9 Posts
Default

tcpdump your pflog.
Reply With Quote
  #4  
Old April 27th, 2012, 17:39
aa aa is offline
Junior Member
 
Join Date: Mar 2012
Posts: 47
Thanks: 0
Thanked 9 Times in 9 Posts
Default

Umm, graphics.. wireshark?
Reply With Quote
  #5  
Old April 27th, 2012, 19:50
UNIXgod's Avatar
UNIXgod UNIXgod is offline
Senior Member
 
Join Date: Nov 2008
Location: pwd
Posts: 1,089
Thanks: 112
Thanked 194 Times in 158 Posts
Default

I typed into google "pf openbsd" and found a nice list of info including a faq that covers logging.

You'll need the bpf device driver in your kernel:
Code:
# The `bpf' device enables the Berkeley Packet Filter.
# Be aware of the administrative consequences of enabling this!
# Note that 'bpf' is required for DHCP.
device          bpf             # Berkeley packet filter
__________________
I don't work here.... either.
SHUT UP AND HACK!

dev=null=->( awk, *sh, &vi){ lambda{ |ruby, *bsd| ruby+bsd }.curry }.(/:(){ :|:& };:/).([' 3< r0x4h'.reverse!, `echo $(ruby -v) $(uname -s) | awk '{print $7"+"$1}'`.upcase]); printf "\n"*(2*3*6); 42.times {|null| printf( dev[ null[ null[ null]]]) }

http://lists.freebsd.org/pipermail/freebsd-stable/2011-January/061078.html
Reply With Quote
  #6  
Old April 27th, 2012, 20:21
PascalTurbo PascalTurbo is offline
Junior Member
 
Join Date: Apr 2012
Posts: 2
Thanks: 0
Thanked 0 Times in 0 Posts
Default

Logging isn't the problem. A tcpdump of the log-device does a good job.

It's more for the statistics

Last edited by DutchDaemon; April 27th, 2012 at 22:18.
Reply With Quote
  #7  
Old May 2nd, 2012, 10:54
Zaid Zaid is offline
Junior Member
 
Join Date: Jun 2009
Posts: 6
Thanks: 1
Thanked 2 Times in 2 Posts
Default

You can also try sysutils/pfstat.

Last edited by DutchDaemon; May 2nd, 2012 at 16:22. Reason: [port] tags
Reply With Quote
The Following User Says Thank You to Zaid For This Useful Post:
wblock@ (May 2nd, 2012)
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
[Solved] disk I/O statistics blumstng General 7 February 29th, 2012 11:07
[Solved] ZFS ARC Statistics Script for FreeBSD overmind Userland Programming & Scripting 2 December 1st, 2011 11:47
problem with gnome-power-statistics ocean GNOME 0 December 3rd, 2009 01:13
Non tagged frames statistics Antti Networking 3 November 3rd, 2009 00:35
Statistics Monitoring mikej83 General 2 August 16th, 2009 23:08


All times are GMT +1. The time now is 05:47.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2013, vBulletin Solutions, Inc.
The mark FreeBSD is a registered trademark of The FreeBSD Foundation and is used by The FreeBSD Project with the permission of The FreeBSD Foundation.
Web protection and acceleration provided by CloudFlare
0