I assume everything goes through a central firewall system.   Modify the
firewall rules so that all NEW IP sessions are logged.  Sessions that
are established can be handled as currently handled.   You will have to
'logrotate' fairly often but it is about the only  place you can be
assured of catching everything.   You could exclude DNS or select just
HTTP, FTP, SSH or whatever protocals of interest by splitting out to
several rules.    I would assume also that only OUTPUT activity would
need to be logged unless you are looking for secret incoming messages
with no outgoing activity associated....

Just a thought....Orwell would be proud of big brother :)

Richard


Verner Kjærsgaard wrote:
> Hi list,
> 
> - as I'm going to use OpenSuSE for this one, so it's not completely off 
> topic. 
> I think.
> 
> - In Denmark a new law is being enforced by the 15th. of September this year. 
> It states that all internet activity must be logged, if you run a hotel or 
> similar. I do. 
> 
> - this means I have to have a router/switch that gives out fixed IP-adresses 
> to fixed rooms. I can do that, we're not wireless but give guests access 
> through cables.
> 
> - I now need to log all internet access per IP-adress/room onto a central 
> server - somewhere in the chain.
> 
> - All in the name of anti-terrorism. Yes, I know, it's all in vain, it will 
> not keep any taleban or criminal from doing what they do. But that's not up 
> to me. I just have to log...however stupid this is.
> 
> - has anyone any ideas as to how with what?
-- 
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to