Sun Jan 25 12:46:09 2004; UDP; eth1; 78 bytes; from 202.155.11.206:137 to
202.155.11.223:137

UDP <= protocol
eth1 <== interface yg dilewati
78 bytes <== besar traffic
202.155.11.206:137 <== source ip 202.155.11.206 dan source port 137
202.155.11.223:137 <== destinition ip 202.155.11.223 dan destinition port
137

kira2 begitu contohnya. :)

----- Original Message -----
From: "ahmad riza h nst" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Monday, January 26, 2004 11:11 AM
Subject: [tanya-jawab] iptraf_log


> woii o-> (ym)
>
> mau tanya ini, beberapa waktu yang lalu kan aku jalankan iptraf untuk
> monitor interface yang ke luar, trus aku periksa log nya .. ternyata dari
> log itu di catat begitu banyak alamat ip yang tidak ada hubungannya dengan
> ip kami namun berkeliaran malalui interface yang berhubungan langsung
> dengan internet
>
> ip public   : 202.155.101.xxx
> ip private  : 192.168.1.0 sebanyak 23 unit.
>
> cth : aku salin sebagian aja :D
>
> [EMAIL PROTECTED] iptraf]# cat ip_traffic-2.log |grep -v 202.155.101.xxx |more
> Sun Jan 25 12:46:04 2004; ******** IP traffic monitor started ********
> Sun Jan 25 12:46:04 2004; UDP; eth1; 46 bytes; from 10.11.12.2:28711 to
> 10.11.12.255:8859
> Sun Jan 25 12:46:04 2004; UDP; eth1; 46 bytes; from 192.168.1.1:2587 to
> 192.168.1.255:8859
> Sun Jan 25 12:46:04 2004; UDP; eth1; 46 bytes; from 192.168.2.57:8560 to
> 192.168.2.255:8859
> Sun Jan 25 12:46:05 2004; UDP; eth1; 78 bytes; from 202.155.11.206:137 to
> 202.155.11.223:137
> Sun Jan 25 12:46:05 2004; UDP; eth1; 46 bytes; from 88.8.88.125:3708 to
> 88.8.88.255:8859
> Sun Jan 25 12:46:06 2004; UDP; eth1; 46 bytes; from 111.111.111.3:36860 to
> 111.111.111.255:8859
> Sun Jan 25 12:46:06 2004; UDP; eth1; 46 bytes; from 192.168.2.3:11205 to
> 192.168.2.255:8859
> Sun Jan 25 12:46:06 2004; UDP; eth1; 46 bytes; from 192.168.1.250:19078 to
> 192.168.1.255:8859
> Sun Jan 25 12:46:07 2004; UDP; eth1; 46 bytes; from 192.168.1.125:32569 to
> 192.168.1.255:8859
> Sun Jan 25 12:46:07 2004; UDP; eth1; 78 bytes; from 202.155.11.206:137 to
> 202.155.11.223:137
> Sun Jan 25 12:46:08 2004; UDP; eth1; 78 bytes; from 202.155.11.206:137 to
> 202.155.11.223:137
> Sun Jan 25 12:46:08 2004; UDP; eth1; 46 bytes; from 192.168.1.1:16762 to
> 192.168.1.255:8859
> Sun Jan 25 12:46:09 2004; UDP; eth1; 78 bytes; from 202.155.11.206:137 to
> 202.155.11.223:137
>
>
> sebenarnya apa sih yang dilaporkan oleh iptraf (seperti yang di atas)
..???
>
> salam
> -------
> rizahnst
> admin ecek-ecek
> yellow internet cafe, sm raja 160c medan
> http://rizahnst.afraid.org/
> -------
>
> --
> Unsubscribe: kirim email kosong ke [EMAIL PROTECTED]
> Arsip dan info di http://linux.or.id/milis.php
> FAQ milis http://linux.or.id/faq.php
>


-- 
Unsubscribe: kirim email kosong ke [EMAIL PROTECTED]
Arsip dan info di http://linux.or.id/milis.php
FAQ milis http://linux.or.id/faq.php

Kirim email ke