I'm having a problem coming up with accounting rules to get what I
need. I've got 3 interfaces:

eth3: fiber ISP
vlan10: wireless ISP
vlan4: Internal LAN

I've got two sets of accounting rules that I'm using to make graphs of
all the traffic to each ISP:

fiber:COUNT     -       vlan4           vlan10  #out
fiber:COUNT     -       vlan10          vlan4   #in
DONE            fiber

wireless:COUNT  -       vlan4           eth3    #out
wireless:COUNT  -       eth3            vlan4   #in
DONE            wireless


I added some ipsec tunnels that go out eth3 and they were not being
counted at all, so I changed the wireless to this:

wireless:COUNT  -       -               eth3    #out
wireless:COUNT  -       eth3            -       #in
DONE            wireless

Now it sees the traffic but I it's being counted twice. If I "iftop -i
eth3" I see two connections, one between the public IPs of the
gateways and the other between the private IPs of the clients in the
different LANs. Is there some way I can make accounting entries that
will exclude one of these?



Thanks,
Brad C

------------------------------------------------------------------------------
This SF.net email is sponsored by 

Make an app they can't live without
Enter the BlackBerry Developer Challenge
http://p.sf.net/sfu/RIM-dev2dev 
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to