LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 02-04-2003, 06:37 PM   #1
psychoholic
Member
 
Registered: Nov 2002
Location: Manchester, UK
Distribution: Slackware 10.2
Posts: 52

Rep: Reputation: 15
Internet / Network Logs


Hi all,

Forgive me for this very very lame question. But ...

Where exactly does linux keep its logs conerning network traffic?

I want to be able to moniter network traffic through my iptables annd ppp0 interface which conencts my XP machine to my linux machine and the outside world. Mainly cause I wont to see if there are any suspect things in there which my iptable script is not stopping..

I've looked in /var/logs... but there no current references to any internet stuff. Do I need to enable logging somewhere?

By the way what isa good program to moniter and view my logs with?

Once again forgive for the lame question its very simple but very vital too!

Thanks for putting up with my dumb question!

Tom
 
Old 02-04-2003, 07:16 PM   #2
Tinkster
Moderator
 
Registered: Apr 2002
Location: earth
Distribution: slackware by choice, others too :} ... android.
Posts: 23,067
Blog Entries: 11

Rep: Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928Reputation: 928
Quote:
I've looked in /var/logs... but there no current references to any internet stuff. Do I need to enable logging somewhere?
Yep ... by default iptables doesn't log packets.

As for monitoring the logs ... what exactly are you
looking for? :)

Cheers,
Tink
 
Old 02-05-2003, 02:19 PM   #3
SlickWilly
Member
 
Registered: Dec 2002
Posts: 327

Rep: Reputation: 30
Sounds like you're looking for a sniffer type thing :

I've found IPTRAF to work well for giving an overview of what's coming in/out of your machine.

http://freshmeat.net/projects/iptraf/?topic_id=152

Ethereal is better at actually looking at the contents of packets.

http://freshmeat.net/projects/ethereal/?topic_id=152

To look at log files use vi.

*cough* Sarcasm there, but you might want to look through freshmeat (chop the urls above) and search for syslog. There are *TONS* of utilities for doing stuff to syslogs from simply viewing them, colourising them so they're all pretty, to sending them off to remote locations for security reasons.

Stuff internet related might be contained within :

/var/log/messages - lots of stuff
/var/log/secure - logons, and um.. 'secure' related stuff
/var/log/xferlog - what people have transferred using ftp


Slick.
 
Old 02-06-2003, 06:28 PM   #4
psychoholic
Member
 
Registered: Nov 2002
Location: Manchester, UK
Distribution: Slackware 10.2
Posts: 52

Original Poster
Rep: Reputation: 15
I'll give those to programs a try! They sound like what I need!

Thanks

Tom
 
Old 02-06-2003, 06:32 PM   #5
peter_robb
Senior Member
 
Registered: Feb 2002
Location: Szczecin, Poland
Distribution: Gentoo, Debian
Posts: 2,458

Rep: Reputation: 48
If you want to monitor what iptables is doing, you need to add some -j LOG rules, otherwise there's nothing in any of the files to read...

Check out the examples in this tutorial.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Internet connection too slow!I have attached the logs for your assistance ignacius_n Fedora 3 08-27-2004 12:59 PM
Pushing logs on a network af_dave Linux - Networking 1 07-25-2004 08:42 PM
MDK Multi-network-firewall - where are the network logs stored? Avatar Mandriva 5 02-11-2004 08:44 PM
Internet lost when root logs on? snatale1 Mandriva 0 01-10-2004 05:57 PM
where are the logs for my internet traffic tonyh Linux - General 2 05-26-2002 05:12 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 04:49 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration