View Single Post
  #2   (View Single Post)  
Old 9th July 2008
J65nko J65nko is offline
Administrator
 
Join Date: May 2008
Location: Budel - the Netherlands
Posts: 4,131
Default

This is not a trivial problem.

You will need:
  • A good study of the tcpdump man page for the display format of the tcpdump file.
  • A reasonable knowledge of regular expressions to parse the file
  • Knowledge of a script language like awk, perl, python or ruby to produce the stats.
__________________
You don't need to be a genius to debug a pf.conf firewall ruleset, you just need the guts to run tcpdump
Reply With Quote