Javier Martínez wrote:
Hí everybody, you have a nice day.

I am configuring accounting in shorewall /etc/shorewall/accounting and the traffic between eth0 (local network)1, eth2(local network2) and eth3(local network3) <--> eth1(ip public network), works fine. I make the accounting because y want to control the remote vpn access(pptpd) throught shorewall.

You cannot CONTROL anything using Shorewall accounting -- you can only count packets and bytes.


Which is the way to control vpn /ip/access in /etc/shorewall/accounting?

Again, you can't CONTROL vpn using Shorewall accounting.

Is my example correct? and if i have diferents vpn wil be with ppp1, ppp2 .. ? or i have to control throght shorewall zone vpn1,vpn2,...

Type "man shorewall-accounting" -- do you see ANY mention of 'zone' there?

/
acc1-out:COUNT    account-ip    -    ppp0:192.168.1.100
acc1-in:COUNT    account-ip    ppp0:192.168.1.100    -
DONE    acc1

To account for the traffic in and out of ppp0, the simplest pair of rules is:

COUNT   -       ppp0    -          #Traffic from ppp0
COUNT   -       -       ppp0       #Traffic to ppp0

-Tom
--
Tom Eastep    \ Nothing is foolproof to a sufficiently talented fool
Shoreline,     \ http://shorewall.net
Washington USA  \ [EMAIL PROTECTED]
PGP Public Key   \ https://lists.shorewall.net/teastep.pgp.key

Attachment: signature.asc
Description: OpenPGP digital signature

-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2008.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to