On 11 Feb 2006 17:33:56 -0800, Jonathan Rogers <[EMAIL PROTECTED]> wrote:
> Thanks much! ...but pfflowd is tremendous overkill for my situation
> (where I just want to collect a few arbitrary traffic stats for a dozen
> IPs at most). Nor do I have a second box to devote to stats collection,
> nor the ability to parse Cisco Netflow data (which is what pfflowd
> outputs).

It's a rather trivial exercise to modify pfflowd to do syslog output. 
I spent a little bit of time a while back to do exactly that for some
work systems.  The code is already in pfflowd (debug mode), the easy
hack is to just comment out the code that actually sends the netflow
packets.

--Bill

Reply via email to