[ubuntu-za] Monitoring Bandwidth used on a Home Network

frans dormakorp at vodamail.co.za
Thu Mar 10 10:30:19 UTC 2011




On 11/03/10 12:00 PM, Rudi Ahlers wrote:
> On Thu, Mar 10, 2011 at 11:54 AM, frans<dormakorp at vodamail.co.za>  wrote:
>> But squid doesn't keep track of SMTP, POP3, IMAP, SSH, MySQL, DNS, etc
>>>>> traffic. For this you would rather use something like bandwidthd
>>>>>
>>>>>
>>>>>
>>>> All this should be possible with the right acl and log rules though it
>>>> might
>>>> be more difficult to setup...If you do everything through the proxy you
>>>> should be able to log everything, same as with your firewall, in the end
>>>> it
>>>> would come down to preference and exactly how much you are willing to put
>>>> into this.
>>> Really?
>>>
>>> How would you log traffic usage on SSH ? More specificaly, if a user
>>> on your LAN uses SSH as a tunnel to download stuff of another server,
>>> how would you log that traffic usage?
>>>
>>> OR, how would you log POP3 traffic usage with SQUID?
>>>
>>>
>>>
>> add to you squid config
>> "
>> acl Safe_ports port 110
>> acl Safe_ports port 25
>> acl Safe_ports port 22
>> etc.
>>
>> "
>> Now point those ports to the squid proxy, from your firewall/gateway, which
>> should be the only route any computer on your network have to the internet.
>>   It's not necessary to do caching on the ports.
>>
>> Get a log file analyser for squid (like sarg) to analyse the logs, and you
>> should be able to see everything that passed through the Proxy in a nice
>> human readable format.
>>
>> That's the logic behind my thinking anyway, if there are some other place
>> where configuration for log files in squid are done, it might be necessary
>> to update that also but as far as I know every thing get logged.
>>
>>
>>
>
> mmm, interesting. With this approach you would need to add every port
> that you want to monitor to the squid config.
>
and if you forward all ports to squid, it should also give you some type 
of control over which protocols are used as well as what websites can be 
visited by whom, etc.



More information about the ubuntu-za mailing list