I'm trying to setup ipfw to count traffic to each ip on the server (one
interface with multiple aliased ip's)
now it seems that the count rules are about the same for each ip while
this isn't the truth..
00007 7715117 6712750640 count ip from any to any via fxp0
00008 2953770 167284959 count ip from any to any in recv fxp0
00009 4761341 6545462313 count ip from any to any out xmit fxp0
00010 7707303 6712093431 count tcp from any to any via 22.214.171.124
00011 2948103 166773748 count tcp from any to any in recv 126.96.36.199
00012 4759198 6545319411 count tcp from any to any out xmit 188.8.131.52
00016 7707299 6712092983 count tcp from any to any via 184.108.40.206
00017 2948101 166773668 count tcp from any to any in recv 220.127.116.11
00018 4759195 6545319003 count tcp from any to any out xmit 18.104.22.168
00022 2842887 145092334 count tcp from any to any 80 via fxp0
As you can see the traffic for ip 22.214.171.124 and ip 126.96.36.199 are about the
same while ip 188.8.131.52 is actually doing nothing (all ports are blocked
cause its not active yet)
What is going wrong here ? how come ipfw counts the same traffic for
Also rule 22 from "any to any 80" shows only a few hundred megs traffic
while 95% of all the traffic on the server is http traffic from
website's so this should be atleast around the 5GB of traffic instead of
a few hundred megs..
Any idea's ??
[EMAIL PROTECTED] mailing list
To unsubscribe, send any mail to "[EMAIL PROTECTED]"