+7 (916) 741 5495
support@netams.com

                         english   

 

service data-source



type { ip-traffic | netflow | libpcap | netgraph | raw }

  • ip-traffic
    ip- divert socket (FreeBSD) netfilter (Linux 2.4.x)
  • netflow
    Cisco, NetFlow, , NetFlow v.5 (ulog2netflow, ipfw2netfloe, flowprobe)
  • libpcap
    libpcap, . , , tcpdump. .
  • netgraph
    . FreeBSD 5.xx. .
  • raw
    ( Cisco Radius) rawdata .

source { tee XXX | divert XXX | ipq | ulog NL1 [NL2 ... NL32] | A.B.C.D | ifname [promisc] | nodename [divert] }
:
FreeBSD
  • tee XXX
    , divert- XXX
  • divert XXX
    , divert- XXX
  • nodename [divert]
    NETGRAPH nodename. divert . .
Linux
netfilter.
man iptables www.netfilter.org
  • ipq
    . libipq.
    ip_queue (modprobe ip_queue). , firewall, :
    iptables -A FORWARD -j QUEUE ...
  • ulog NL1 [NL2 ... NL32]
    , NLx ULOG.
    , firewall, :
    iptables -A FORWARD -j ULOG --ulog-nlgroup NLx ...
    nlgroup NLx 1-32
  • A.B.C.D
    NetFlow () IP- A.B.C.D UDP- 20001 , listen
  • ifname [promisc]
    ,
    promisc, promisc mode. - .

listen { 0 | ip } port_number
IP UDP-, NetFlow ().

clock { remote | local }
, - NetFlow-.

layer7-detect { none | urls }
(URL) , data-source. "none" () "urls". , 80, 81, 8080, 8000, 3128 Host: GET. ( layer7 monitor).

rule ID rule_string
, :
  • ID
    , Linux ..
  • rule_string
    , (Linux FreeBSD) .

no rule ID
ID.

[an error occurred while processing this directive]