Hello List, hello Darren.

It would be perfect to be able to "pin" a label to a rule so that
there will be a simple but efficient way to distinguish between rules
or a group of rules. These labels should not be unique. Then, for
example, I will be able to look through a list of rules and sum up all
the statistic counters associated with rules with the same label
before storing them to database.

I made some changes to IPFilter to allow users to pin a label to
rules. The syntax will be as follows:

count in  on ed0 from 192.168.1.1 to 192.168.1.201 port = 3128 label 1
count out on ed1 from 192.168.1.1 to any label 1

count out on ed0 from 192.168.1.201 port = 3128 to 192.168.1.1 label 10001
count in  on ed1 from any to 192.168.1.1 label 10001

You can find patches for IPFilter 3.4.31 and 3.4.32 in attached files.
Could someone who is familiar enough with IPFilter source (Darren?)
review them as there might be some additional changes required due to
the change made to 'ip_fil.h'.

Regards,
Andrei.

Attachment: ipf3.4.32_label.patch
Description: Binary data

Attachment: ipf3.4.31_label.patch
Description: Binary data

Reply via email to