NetFilter
[Top] [All Lists]

Re: Logging NAT Translations

To: netfilter@lists.netfilter.org
Subject: Re: Logging NAT Translations
From: Petr Pisar <xpisar@fi.muni.cz>
Date: Sun, 20 May 2007 19:23:35 +0000 (UTC)
Delivered-to: sp-com-lists@consult.net
Delivered-to: netfilter-list1@securepoint.com
List-archive: </pipermail/netfilter>
List-help: <mailto:netfilter-request@lists.netfilter.org?subject=help>
List-id: General discussion and user questions <netfilter.lists.netfilter.org>
List-post: <mailto:netfilter@lists.netfilter.org>
List-subscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=subscribe>
List-unsubscribe: <https://lists.netfilter.org/mailman/listinfo/netfilter>, <mailto:netfilter-request@lists.netfilter.org?subject=unsubscribe>
References: <ae1f24730705182015j533102bah985e9ad0e905cd2a@mail.gmail.com>
Sender: netfilter-bounces@lists.netfilter.org
User-agent: slrn/0.9.8.1 (Linux)
On 2007-05-19, Craig Bernstein <cbernstein@cbernstein.com> wrote:
>
> Is there a way to log connections along with all of their NAT
> translation data?
>
[...]
> /proc/net/ip_conntrack has the information I need, but no way to send
> it to the log it at the beginning and/or end of the session.
>
You can use tool "conntrack" that can almost in real time log conntrack
events like creating new connction or destroying old one.

-- Petr



<Prev in Thread] Current Thread [Next in Thread>