Tom Eastep
2005-Feb-15 17:25 UTC
Re: Shorewall reporting with rrdtool and human readeable iptables output problem.
Paulo Cunha wrote:> Hi everybody, > > this is my first post here, i''ve just syubscribed and i woud like to > ask a question. > > i''m running shorewall latest version with mrtg and rrdtool, with the > perl shorewall-stats.pl for reporting. > > the problem is that the pearl gets the stats by the shorewall show > command and it''s human readeable bytes form, so 1K, 1M, 1G, and when > it gets Gb, it looses significant resulurion on the graphs, making > them non readeable. > > i''ve modifyed the shorewall script at line 942 and added a -x option > to iptables, so the output of the show "rule" command will not output > human readeable bytes now. > > i think shorewall must have a option for disabling human readeable > outputs, so we can get presise information about traffic... > > way you think ? >Shorewall already has the "-x" option: gateway:/usr/src/ipsec-tools-0.5rc2/src/racoon/samples# shorewall -x show INPUT Shorewall-2.2.0 Chain INPUT at gateway - Tue Feb 15 09:25:04 PST 2005 Counters reset Sun Feb 13 08:25:34 PST 2005 Chain INPUT (policy DROP 4 packets, 440 bytes) pkts bytes target prot opt in out source destination 293953 41082180 ACCEPT all -- lo * 0.0.0.0/0 0.0.0.0/0 803107 177887483 accounting all -- * * 0.0.0.0/0 0.0.0.0/0 18364 23257002 eth2_in all -- eth2 * 0.0.0.0/0 0.0.0.0/0 178501 18532755 eth3_in all -- eth3 * 0.0.0.0/0 0.0.0.0/0 1049 600167 eth1_in all -- eth1 * 0.0.0.0/0 0.0.0.0/0 0 0 texas_in all -- texas * 0.0.0.0/0 0.0.0.0/0 0 0 tun_in all -- tun+ * 0.0.0.0/0 0.0.0.0/0 605190 135497229 eth0_in all -- eth0 * 0.0.0.0/0 0.0.0.0/0 0 0 Reject all -- * * 0.0.0.0/0 0.0.0.0/0 0 0 LOG all -- * * 0.0.0.0/0 0.0.0.0/0 LOG flags 0 level 6 prefix `Shorewall:INPUT:REJECT '' 0 0 reject all -- * * 0.0.0.0/0 0.0.0.0/0 gateway:/usr/src/ipsec-tools-0.5rc2/src/racoon/samples# -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
Paulo Cunha
2005-Feb-15 17:28 UTC
Shorewall reporting with rrdtool and human readeable iptables output problem.
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hi everybody, this is my first post here, i''ve just syubscribed and i woud like to ask a question. i''m running shorewall latest version with mrtg and rrdtool, with the perl shorewall-stats.pl for reporting. the problem is that the pearl gets the stats by the shorewall show command and it''s human readeable bytes form, so 1K, 1M, 1G, and when it gets Gb, it looses significant resulurion on the graphs, making them non readeable. i''ve modifyed the shorewall script at line 942 and added a -x option to iptables, so the output of the show "rule" command will not output human readeable bytes now. i think shorewall must have a option for disabling human readeable outputs, so we can get presise information about traffic... way you think ? Thanks and sorry for my poor english, Paulo Cunha Interlize Internet www.interlize.com.br keywords: shorewall rrdtool shorewall-stats.pl stop graphics stop collecting data stop logging -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.0 (GNU/Linux) iD8DBQFCEjElgwLgjZASvYURAkkuAKCOQoKQnJOiQLSON8uUfPRRwBhyHgCgnivR sP4OyYhoczihZPGXBaabVEE=w9ES -----END PGP SIGNATURE-----