TOV> Depinde cum vrei. Ce trebuie tu sa retii este ca accesul se
TOV> stabileste per user, iar userilor le asignezi la fiecare in parte
TOV> ip-uri. Deci Nu te gindi ca bagi un singur subnet mare, pe care-l
TOV> atasezi la filtrele de accounting ca expanded si apoi vei putea da acces
TOV> doar pe o parte dintre ele acces la useri. Deci depinde de situatia ta.
eu o sa dau unui user singur drept de a intra sa vada traficul
(adminul), dar ideea e ca daca dau sa vada trafic pe fiecare ip
(1-200) se cam incarca iptables, dupa cum zici si tu in doc'uri
mai am insa inca o problema: iptables -t mangle -L -v -n nu-mi
contorizeaza pe fiecare regula de IP:
(unde sa caut hiba?)
Chain PREROUTING (policy ACCEPT 37M packets, 14G bytes)
pkts bytes target prot opt in out source destination
10233 775K 2_rev all -- eth0 * 0.0.0.0/0 0.0.0.0/0
Chain INPUT (policy ACCEPT 22M packets, 9777M bytes)
pkts bytes target prot opt in out source destination
Chain FORWARD (policy ACCEPT 15M packets, 4011M bytes)
pkts bytes target prot opt in out source destination
Chain OUTPUT (policy ACCEPT 24M packets, 13G bytes)
pkts bytes target prot opt in out source destination
Chain POSTROUTING (policy ACCEPT 39M packets, 17G bytes)
pkts bytes target prot opt in out source destination
6503 1143K 2_str all -- * eth0 0.0.0.0/0 0.0.0.0/0
Chain 2_rev (1 references)
pkts bytes target prot opt in out source destination
0 0 RETURN all -- eth0 * 0.0.0.0/0 192.168.1.4
0 0 RETURN all -- eth0 * 0.0.0.0/0 192.168.1.2
0 0 RETURN all -- eth0 * 0.0.0.0/0 192.168.1.3
0 0 RETURN all -- eth0 * 0.0.0.0/0 192.168.1.5
0 0 RETURN all -- eth0 * 0.0.0.0/0
192.168.1.64/27
Chain 2_str (1 references)
pkts bytes target prot opt in out source destination
0 0 RETURN all -- * eth0 192.168.1.4 0.0.0.0/0
0 0 RETURN all -- * eth0 192.168.1.2 0.0.0.0/0
0 0 RETURN all -- * eth0 192.168.1.3 0.0.0.0/0
0 0 RETURN all -- * eth0 192.168.1.5 0.0.0.0/0
0 0 RETURN all -- * eth0 192.168.1.64/27 0.0.0.0/0
--
Best regards,
Remus mailto:[EMAIL PROTECTED]
---
Detalii despre listele noastre de mail: http://www.lug.ro/